X Platform Agent - powered by Teneo Protocol
Security checks across static analysis, malware telemetry, and agentic risk
Overview
The skill's description and instructions largely align (it uses a Teneo SDK to provide a paid web3-backed social-listening agent), but it implicitly requires sensitive wallet access and connects to an external websocket backend without declaring how credentials are provided or protected — verify before installing or running.
Before installing or running this skill: (1) Verify the authenticity of the @teneo-protocol/sdk npm package and the linked GitHub repo (check publisher, recent commits, issues). (2) Confirm exactly how wallet credentials are provided — never paste private keys into random prompts; use an external wallet connector or hardware wallet where possible. (3) Audit or review the SDK code (or run it in an isolated environment) to see what data is transmitted to the wss://backend.developer.chatroom.teneo-protocol.ai host. (4) Understand on-chain payments: using the agent will cause USDC transactions; expect real costs. (5) If you cannot validate the SDK or backend, avoid providing wallet access or running the skill with real funds.
Static analysis
No static analysis findings were reported for this release.
VirusTotal
No VirusTotal findings
Risk analysis
No visible risk-analysis findings were reported for this release.
