ads-generate
Warn
Audited by Socket on May 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s core function is coherent, but it relies on third-party skill/MCP components and forwards Google AI credentials into external code outside a clearly official vendor distribution path. File access is mostly proportionate, yet the install-trust and credential-routing model make the overall skill medium-high risk.
Confidence: 85%Severity: 82%
Audit Metadata