running-marketing-campaigns

Pass

Audited by Gen Agent Trust Hub on Sep 25, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references standard, well-known Python packages including requests, qrcode, and pillow for URL shortening and QR code generation functionality.
  • [COMMAND_EXECUTION]: Includes Python scripts (utm_tools.py and brand_checker.py) designed for campaign automation. These tools perform local file I/O (CSV and images) and make authenticated network requests to the well-known Bitly API for URL shortening, which is consistent with its stated purpose.
  • [INDIRECT_PROMPT_INJECTION]: The provided scripts ingest user-supplied marketing copy and campaign data for analysis and formatting. While this represents a theoretical ingestion surface for indirect prompt injection, the risk is categorized as low due to the tools' specific scope and lack of privileged system operations.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 25, 2026, 08:04 AM
Security Audit — agent-trust-hub — running-marketing-campaigns