twitter-mcp-secure
Click on "Install Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@twitter-mcp-securepost a tweet saying Hello World"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
Twitter MCP Server (Secure Fork)
Security-hardened fork of EnesCinr/twitter-mcp. Fixes sensitive content leakage in stderr logs.
This MCP server allows Clients to interact with X.com (Twitter).
Changes from upstream
Core fix:
console.errorno longer logs tweet content during normalpost_tweet/search_tweetsoperationsResidual fix: error handlers sanitized — log only
error.message, not the full error object (prevents API response payload leakage on errors)
Related MCP server: x-post-mcp
Security Review
A full security review identified and closed residual log-leak vectors. See PR #1 for details.
Quick Start
Get API keys from Twitter Developer Portal
Add this to Claude Desktop config:
{
"mcpServers": {
"twitter-mcp-secure": {
"command": "node",
"args": ["build/index.js"],
"env": {
"API_KEY": "your_key",
"API_SECRET_KEY": "your_key",
"ACCESS_TOKEN": "your_key",
"ACCESS_TOKEN_SECRET": "your_key"
}
}
}
}Restart Claude Desktop
Development
git clone https://github.com/MunhoLau/twitter-mcp-secure.git
cd twitter-mcp-secure
npm install && npm run build && npm startCredit
Forked from EnesCinr/twitter-mcp
License
MIT
This server cannot be installed
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Servers
- AlicenseBqualityDmaintenanceMCP server for interacting with the X platform (Twitter) via MCP clients like Claude, Cursor AI, and Windsurf AI.20146MIT
- AlicenseNot gradedqualityDmaintenanceA minimal MCP server for posting tweets to X (Twitter) via API v2, supporting tweet creation, replies, and quote tweets.10MIT
- AlicenseAqualityAmaintenanceMCP server to read X (Twitter) posts, threads, replies, quotes, and search using your own logged-in session, no API key required.83MIT
- AlicenseNot gradedqualityBmaintenanceMCP server that allows posting, deleting, and reading X (Twitter) tweets using your own browser session cookie, bypassing the official paid API. Includes tools for auth setup, tweet creation, deletion, timeline reading, and regex search.1MIT
Related MCP Connectors
FastMCP server for posting formatted content to X (Twitter) — Tollbooth-monetized, DPYC-native
Security scanner for MCP servers. Detect vulnerabilities, prompt injection, and tool poisoning.
Hosted MCP for X/Twitter and Reddit. 12 read-only tools, no API keys, free during beta.
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/MunhoLau/twitter-mcp-secure'
If you have feedback or need assistance with the MCP directory API, please join our Discord server