x-twitter-data

Pass

Audited by Gen Agent Trust Hub on Jul 29, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill makes network requests to https://twitr.sh to retrieve social media data. These requests are a core part of the skill's documented functionality and involve a transparent payment mechanism.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests live content from X/Twitter, which represents an indirect prompt injection surface as tweet content is attacker-controllable.
  • Ingestion points: Data retrieved from API endpoints including x_read, x_search, and x_timeline (SKILL.md).
  • Boundary markers: The instructions do not define specific delimiters or boundary markers for the retrieved data.
  • Capability inventory: The skill utilizes mcp__agentcash__fetch to perform network requests and handle payments (SKILL.md).
  • Sanitization: The skill does not specify any sanitization or filtering protocols for the ingested data.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 29, 2026, 05:19 PM
Security Audit — agent-trust-hub — x-twitter-data