creator-insights
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill demonstrates secure development practices by utilizing environment variables for API keys (TWITTER_API_KEY and OPENROUTER_API_KEY) and routing network traffic through the platform's recommended proxy settings. All identified network operations target well-known services for the purpose of social media analysis and AI processing.
- [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from the Twitter API and interpolates it into prompts for an LLM. While this is necessary for the skill's analytical functions, it creates a surface where malicious tweet content could attempt to influence the agent's output.
- Ingestion points: Tweet text is fetched via
scripts/api_client.pyusing theget_twitter_user_timelineandsearch_twitter_tweetsmethods. - Boundary markers: The skill employs JSON-formatted prompts and triple-quote delimiters in
scripts/content_generator.pyandscripts/twitter_analyzer.pyto distinguish untrusted content from system instructions. - Capability inventory: The skill possesses network capabilities to communicate with Twitter and OpenRouter APIs and provides formatted text/JSON output to the user.
- Sanitization: Content is processed through weighted engagement algorithms and statistical analysis prior to LLM interpolation to identify relevant patterns.
Audit Metadata