paw-mkt-paid-ads

Pass

Audited by Gen Agent Trust Hub on May 20, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill suggests the installation of the agent-browser tool from the official Vercel Labs GitHub repository or the NPM registry. These are well-known and trusted sources for development and automation tools.
  • [COMMAND_EXECUTION]: The skill provides instructions for the agent to execute shell commands to perform environment discovery and competitive research via agent-browser. These operations are consistent with the skill's intended purpose for performance marketing professionals.
  • [PROMPT_INJECTION]: The skill exhibits a surface for indirect prompt injection because it fetches and interprets text content from external web pages (such as ad libraries and competitor sites) using agent-browser. This behavior is characteristic of research-focused agents and is documented neutrally.
Audit Metadata
Risk Level
SAFE
Analyzed
May 20, 2026, 10:38 AM
Security Audit — agent-trust-hub — paw-mkt-paid-ads