bird-fast

Fail

Audited by Socket on Mar 8, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The bird-fast skill footprint is coherent with its stated purpose of terminal Twitter automation via browser cookies and internal GraphQL APIs. However, the authentication model (cookie extraction from local browsers) introduces meaningful credential exposure risk and potential data leakage paths. The use of private GraphQL endpoints and cookie-based auth is plausible but elevates risk compared to standard OAuth-based flows. Overall: SUSPICIOUS due to credential surface and data-flow implications, but not evidently malicious. If adopted, it should include explicit safeguards (least-privilege scope, explicit user prompts for sensitive actions, clear isolation/sandboxing, and strong documentation on how credentials are stored, used, and protected).

Confidence: 98%
Audit Metadata
Analyzed At
Mar 8, 2026, 12:12 AM
Package URL
pkg:socket/skills-sh/ckorhonen%2Fclaude-skills%2Fbird-fast%2F@8414ed6b1f2e274fbb50a71787449cab977c6414