All skills
heygen-com avatar

/x-posting-license

@0e20fd3

Turn any X (Twitter) profile into a 10.3s animated "POSTING LICENSE" card video — a fake driver's license in X's branding: the card slides in over an animated dot-matrix ground, license text types on letter-by-letter, follower / following / post counters tick up, a diagonal glimmer sweeps as the card tilts in 3D, it flips to a fine-print back with a signature write-on, then crouches and leaps out of frame. Trigger on: "X driver's license", "posting license", "make an X license for @handle", "license card video". The whole composition is a finished template — the agent only supplies profile data and renders.

Use this Skill: https://skilld.dev/gh/heygen-com/hyperframes-community-skills/x-posting-license

This session only. Nothing lands on disk.

referencesprofile-data.md

≈363 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Getting the profile data

Everything on the card is real profile data. Two sources cover all of it.

1. The logged-out profile page — https://x.com/<handle>

Load it in a browser (a browser tool works; plain HTTP fetch gets a JS shell). The logged-out view reliably shows:

  • Display name and @handle (page title: Name (@handle) / X)
  • Bio, location, Joined <Month> <Year>
  • Following and Followers counts

Avatar: collect img[src] values containing profile_images and pick the _400x400 variant — that is the profile photo at full quality. Download it:

curl -sL "https://pbs.twimg.com/profile_images/<id>/<file>_400x400.jpg" -o avatar.jpg

2. Post count — the fxtwitter API

The logged-out page usually hides the post count. Fetch it (no auth):

curl -s "https://api.fxtwitter.com/<handle>"

user.tweets is the post count; user.followers / user.following should match the page scrape (prefer the page numbers if they disagree — they're what the person sees). If fxtwitter is unavailable, ask the user for their post count rather than inventing one.

Formatting

  • --joined takes "MMM YYYY" uppercase ("JAN 2026"); the build derives the ISS MM/YYYY line from it.
  • Counts are raw integers; the composition adds thousands separators itself.
  • Bio: compress the real bio to one uppercase line, ≤ ~65 chars, fragments joined with ·. Keep their @mentions verbatim.

Source: SKILL.md on GitHub

1 warning1mo3 checks · Risk SAFE
  • Gen Agent Trust Hub1mo

    The skill generates a video based on X profile data. While it processes untrusted external data, it implements robust sanitization, including HTML escaping and file path validation, to prevent injection and directory traversal attacks.

  • Socket1mo

    No alerts

  • Snyk1mo

    Risk: MEDIUM · 1 issue

Signed by skilld at 0e20fd3. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 6 days ago.

Activeupdated last month

README badge

README badge for heygen-com/hyperframes-community-skills/x-posting-license