twitter-card-image-generator

Pass

Audited by Gen Agent Trust Hub on Jun 18, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: A thorough review of the skill's instructions and code templates found no malicious behavior. The skill is focused on generating static visual assets and does not perform unauthorized network operations, file system modifications, or credential harvesting.\n- [EXTERNAL_DOWNLOADS]: The skill references Oginify (oginify.com) and the official Twitter Card Validator (cards-dev.twitter.com). These are reputable, service-specific tools used for image validation and as alternative generation methods.\n- [PROMPT_INJECTION]: The skill describes a content-aware workflow that ingests user web content to extract visual elements. While this is an ingestion surface for indirect prompt injection, the impact is negligible as the agent's actions are limited to generating a static image response, and the skill provides explicit validation checks to ensure content and dimension accuracy.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 18, 2026, 01:21 PM
Security Audit — agent-trust-hub — twitter-card-image-generator