last30days-v3-spec

Warn

Audited by Socket on Apr 12, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core research behavior is coherent, but the skill carries medium security risk because it mixes many credentials, processes large volumes of untrusted external content with Bash/Write permissions, and most importantly routes X access through a Bird-backed path using AUTH_TOKEN and CT0 rather than the official X API. No direct malware or overt exfiltration is shown in this excerpt, but the credential and data-flow design is riskier than necessary for a research skill.

Confidence: 85%Severity: 69%
Audit Metadata
Analyzed At
Apr 12, 2026, 04:52 PM
Package URL
pkg:socket/skills-sh/mvanhorn%2Flast30days-skill%2Flast30days-v3-spec%2F@974e3d2d257e85441c9d5accd0deb3a6fc174af3