ecommerce-ppc-strategy-planner

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill functions as a strategic advisor for e-commerce advertising. It processes user-provided business metrics (price, margin, budget) to generate text-based strategy documents and ad copy.
  • [EXTERNAL_DOWNLOADS]: The documentation references installation commands using npx skills add from the vendor's GitHub repositories (nexscope-ai/eCommerce-Skills and nexscope-ai/Amazon-Skills). These resources belong to the verified author 'nexscope-ai' and represent standard skill distribution practices.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest external product and performance data. However, the risk is negligible as the skill only outputs strategy templates, ad copy, and AI image prompts, without the capability to execute arbitrary code or perform sensitive file system operations.
  • Ingestion points: User-provided product descriptions and performance data in SKILL.md (Steps A1 and B1).
  • Boundary markers: The skill uses a structured parsing workflow (Step 1-4) to extract specific fields before generating output.
  • Capability inventory: None. The skill generates static text and templates; no subprocess, network, or file-writing capabilities are present in the instructions.
  • Sanitization: Not applicable as the output is constrained to ad copy and strategy templates.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 10:53 AM
Security Audit — agent-trust-hub — ecommerce-ppc-strategy-planner