paid-ads

Pass

Audited by Gen Agent Trust Hub on Mar 6, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill is vulnerable to indirect prompt injection through its data ingestion practices.
  • Ingestion points: The skill is instructed to read '.claude/product-marketing-context.md' if it exists and gather campaign details and landing page URLs from the user.
  • Boundary markers: Absent. There are no instructions to use delimiters or to treat the content of the marketing context file as untrusted data.
  • Capability inventory: The skill claims direct access to ad platform accounts and references tool integrations for Google Ads, Meta, LinkedIn, and TikTok for campaign management and budget optimization.
  • Sanitization: Absent. The skill does not include steps to validate or sanitize the ingested marketing context or external URLs.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 6, 2026, 06:39 AM