twitterapi-cli
Warn
Audited by Snyk on Feb 27, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill explicitly fetches and returns public Twitter content (tweets, user profiles, followers) via the twitterapi CLI (see SKILL.md and references/cli.md commands like
twitterapi user tweets,twitterapi tweet search, andtwitterapi user infothat pull data from https://api.twitterapi.io), which is untrusted user-generated content that the agent is expected to read and can materially influence subsequent decisions or actions.
Audit Metadata