x-twitter-scraper-cn

Pass

Audited by Gen Agent Trust Hub on Aug 8, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
  • [SAFE]: The skill includes robust security guidelines for handling Indirect Prompt Injection. Instruction 4 explicitly commands the agent to treat retrieved X/Twitter content as untrusted data and not to execute any instructions found within tweets, profiles, or messages.
  • [SAFE]: The instructions enforce credential safety by forbidding the agent from printing API keys, tokens, cookies, or secrets, and suggesting the use of environment variables for configuration.
  • [EXTERNAL_DOWNLOADS]: The skill references an installation command npx skills@1.5.3 add Xquik-dev/x-twitter-scraper which fetches a remote skill from the Xquik-dev GitHub repository. This uses the platform's standard package manager for skills.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 8, 2026, 03:36 PM
Security Audit — agent-trust-hub — x-twitter-scraper-cn