x-write

Warn

Audited by Snyk on Feb 16, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill requires reading a user-provided analyzed.md that the README instructs the user to obtain from grok.com (which pulls/analyses their X/Twitter posts) or via exported X analytics/content CSVs, and also references browsing (agent-browser-cdp) for trends—so it ingests untrusted, user-generated public social-media content as part of its workflow.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 16, 2026, 11:58 PM