twitter-thread-creation
Pass
Audited by Gen Agent Trust Hub on Aug 8, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references and provides commands to install the
belt-sh/cliandinference-sh/skillsfrom external sources. These are standard platform components required for the skill to function as intended.- [COMMAND_EXECUTION]: The skill uses thebeltcommand-line interface to execute various application tools, includingx/post-createfor social media interaction,infsh/html-to-imagefor asset creation, andinfsh/agent-browserfor web interaction. These commands are integral to the skill's documented workflow.- [PROMPT_INJECTION]: The skill design includes an attack surface for indirect prompt injection.- Ingestion points: The agent ingests data from external sources through thetavily/search-assistantandinfsh/agent-browsertools.- Boundary markers: The provided instructions do not include specific boundary markers or 'ignore' instructions for content retrieved from external sources.- Capability inventory: The agent is equipped with thex/post-createtool, which allows it to write content to a public social media platform.- Sanitization: The skill does not prescribe specific sanitization or validation steps for content fetched from the web before it is used in outbound social media posts.
Audit Metadata