x-api
Pass
Audited by Gen Agent Trust Hub on Apr 6, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill follows security best practices by using environment variables for all API credentials and providing explicit warnings against hardcoding secrets or committing them to version control.
- [DATA_EXFILTRATION]: Network operations are restricted to well-known, official X API domains (api.x.com and upload.twitter.com) for authorized tasks like posting tweets and media.
- [SAFE]: While the skill retrieves external data from X for search and voice modeling, it does not demonstrate any unsafe use of this data that would lead to indirect prompt injection or other vulnerabilities.
Audit Metadata