twitter

Fail

Audited by Socket on Mar 1, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The multi-tool Twitter/X integration described is functionally coherent for research, monitoring, posting, and archiving. However, credential handling shows clear weaknesses due to plaintext storage across multiple locations and reliance on browser cookies for authentication, alongside a broad dependency surface with several external tools. This warrants careful secret management, strict access controls, and explicit provenance/pinning for all dependencies. Overall, the risk is notable (suspicious-to-high) but not definitively malicious; a tightened security posture could mitigate most concerns.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 1, 2026, 07:57 AM
Package URL
pkg:socket/skills-sh/tdimino%2Fclaude-code-minoan%2Ftwitter%2F@64ad59d5eba1f216462f92b651058fbccb60757e