ads-audit

Warn

Audited by Socket on Apr 26, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill's core capabilities fit its stated Google Ads audit purpose, and there is no download-execute malware pattern. The main risk is data and credential flow through AdsAgent's third-party remote MCP service plus moderate prompt-injection exposure from website fetching combined with local file writes. This looks coherent but not low-risk.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Apr 26, 2026, 07:52 AM
Package URL
pkg:socket/skills-sh/nowork-studio%2Ftoprank%2Fads-audit%2F@e3ee128f49093c33b03ad4958da1728612f452fd