X Search 1.0.0

Security checks across malware telemetry and agentic risk

Overview

This skill does what it claims: it searches X/Twitter through xAI using a user-provided API key.

Install only if you trust the publisher with an xAI API key. Use a dedicated, revocable key when possible, monitor xAI usage, and avoid placing private or confidential information in search queries because those queries are sent to xAI for processing.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • MCP Least PrivilegeUnderdeclared Capability, Wildcard Permission, Missing Permission Declaration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Lp3

Medium
Category
MCP Least Privilege
Confidence
94% confidence
Finding
The skill declares required environment variables and clearly relies on Python plus outbound API access to xAI/X, but it does not declare explicit permissions for environment access and network use. This creates a transparency and policy-enforcement gap: a host may invoke the skill without clearly surfacing that it can read secrets and send data off-box, increasing the risk of unintended credential use or data exfiltration through remote requests.

VirusTotal

67/67 vendors flagged this skill as clean.

View on VirusTotal