blocking-muting-management
Audited by Socket on Feb 28, 2026
1 alert found:
SecurityThis skill is a set of browser console automation scripts that perform high-impact actions on X/Twitter: mass block/unblock/mute, automated bot detection-driven blocking, keyword-based muting, automated spam reporting, and covert follower removal via soft-block. There is no evidence of credential theft or external data exfiltration — all actions are executed via the user's active browser session and DOM interactions. The primary risks are autonomy abuse and platform abuse: these scripts enable mass or covert actions that can be weaponized (mass reporting, indiscriminate blocking, removing followers without notice). Heuristic bot detection can cause false positives and unintended mass blocking. Overall, the code is not malware in the sense of credential harvesting or remote control, but it poses a meaningful security and abuse risk because it automates actions with real-world consequences. Use should be limited to trusted operators, with review modes enforced and per-action confirmations to reduce accidental or malicious misuse.