paid-ads
Pass
Audited by Gen Agent Trust Hub on Mar 6, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- [PROMPT_INJECTION]: The skill is vulnerable to indirect prompt injection through its data ingestion practices.
- Ingestion points: The skill is instructed to read '.claude/product-marketing-context.md' if it exists and gather campaign details and landing page URLs from the user.
- Boundary markers: Absent. There are no instructions to use delimiters or to treat the content of the marketing context file as untrusted data.
- Capability inventory: The skill claims direct access to ad platform accounts and references tool integrations for Google Ads, Meta, LinkedIn, and TikTok for campaign management and budget optimization.
- Sanitization: Absent. The skill does not include steps to validate or sanitize the ingested marketing context or external URLs.
Audit Metadata