xquik-data
Pass
Audited by Gen Agent Trust Hub on Aug 8, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, or unauthorized command executions were identified in the instructions.
- [CREDENTIALS_UNSAFE]: While the skill manages tasks involving API keys and webhook secrets, it includes explicit prohibitions against printing, storing, or repeating these credentials in agent responses.
- [PROMPT_INJECTION]: The skill involves processing untrusted data from X/Twitter (e.g., posts, profiles), which represents a potential surface for indirect prompt injection. This risk is addressed through instructions to keep source data separate from the agent's internal analysis and recommendations.
- [EXTERNAL_DOWNLOADS]: The skill directs the agent to official documentation and OpenAPI schemas hosted on the xquik.com domain to facilitate accurate workflow design.
Audit Metadata