ads-audit
Warn
Audited by Socket on Apr 26, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's core capabilities fit its stated Google Ads audit purpose, and there is no download-execute malware pattern. The main risk is data and credential flow through AdsAgent's third-party remote MCP service plus moderate prompt-injection exposure from website fetching combined with local file writes. This looks coherent but not low-risk.
Confidence: 84%Severity: 58%
Audit Metadata