github.com / d60
d60/ twikit
Python·57 files·commit c3b7220·scanned 4d ago·cached ✓
13/100
LOW RISK
Minor findings consistent with the project type. Nothing reachable from install hooks.
verdict accurate?
threat-state: lowlive
FINDINGS ░▒▓
warningHigh-entropy string literalsFound 54 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.twikit/client/gql.py+3
warningHigh-entropy string literalsFound 4 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.twikit/x_client_transaction/transaction.py+3
Scores are heuristics. A “safe” verdict means no known-malicious patterns were found — clever malware can look boring. Wrong verdict? Flag it above; confirmed false positives become regression tests.
43 files scanned @ c3b7220 | 8/20/2026 | heuristic scan — always review manually
risk by category
code execution2
network & exfiltration0
file system access0
obfuscation6
supply chain2
owasp / injection0
telemetry
files 43/57rules hit 4engine v5commit c3b7220
github
d60/twikit
Twitter API Scraper | Without an API key | Twitter Internal API | Free | Twitter scraper | Twitter Bot
4626
560
947d
57 files
43 scanned(75%)
c3b7220
architecture░▒▓
entry (0) flagged (2) pkg (28)
70 nodes · 201 edgesscroll to zoom · click node to jump to finding