twitter-monitor

Warn

Audited by Socket on May 3, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the fetch/export workflow matches the stated purpose, but the optional Feishu sync introduces disproportionate trust in a personal third-party CLI installed via curl|bash. The main risk is supply-chain and credential forwarding, not confirmed malicious behavior.

Confidence: 85%Severity: 62%
Audit Metadata
Analyzed At
May 3, 2026, 02:55 AM
Package URL
pkg:socket/skills-sh/kangarooking%2Fkangarooking-skills%2Ftwitter-monitor%2F@a092ffd1569a0feb0cb90f9757d634ff26787cc5