launch-ad-campaign

Pass

Audited by Gen Agent Trust Hub on Apr 1, 2026

Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
  • [PROMPT_INJECTION]: The skill processes untrusted data from local configuration files which presents a surface for indirect prompt injection (Category 8).
  • Ingestion points: Brand profiles and guidelines are loaded from ~/.claude-marketing/ (Process step 1).
  • Boundary markers: No explicit markers or 'ignore' instructions are used for the loaded content.
  • Capability inventory: The skill can execute local scripts and interact with ad platform APIs (Process steps 10, 12, 15).
  • Sanitization: No content sanitization is mentioned.
  • [COMMAND_EXECUTION]: The skill executes local Python scripts approval-manager.py and execution-tracker.py to handle campaign approvals and logging.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 1, 2026, 01:18 AM