Warn
Audited by Socket on Mar 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The stated purpose matches social posting, but the implementation footprint is not fully trustworthy because it relies on an unspecified external `twitter` CLI with unverifiable provenance and undocumented data flow. The skill also enables autonomous public posting, so risk is high even without confirmed malicious intent.
Confidence: 86%Severity: 83%
Audit Metadata