pp-x-twitter

Warn

Audited by Socket on May 11, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The core capability matches an X/Twitter automation skill, but the footprint is high risk: mutable installer paths, manual browser-cookie/token capture, arbitrary webhook output delivery, and support for autonomous public posting/messaging. This looks more like a powerful social-media operations tool than simple API read access, so the access and action scope are only partly proportionate to the description.

Confidence: 87%Severity: 76%
Audit Metadata
Analyzed At
May 11, 2026, 04:39 AM
Package URL
pkg:socket/skills-sh/mvanhorn%2Fprinting-press-library%2Fpp-x-twitter%2F@6df3650aa2ef58016f5a59e658a6ea84a13d4933