ads-plan
Pass
Audited by Gen Agent Trust Hub on May 5, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: No security issues were detected. The skill is composed of markdown files and instructional templates designed to guide an agent through advertising planning.
- [NO_CODE]: The skill does not contain any executable scripts (Python, Node.js, Shell), binaries, or tool definitions. Its functionality relies entirely on natural language instructions and reading local documentation.
- [INDIRECT_PROMPT_INJECTION]: The skill processes external data during its 'Competitive Analysis' phase, where it instructs the agent to analyze ad presence on external platforms like Google Ads Transparency and Meta Ad Library. While this represents a surface for indirect prompt injection—where malicious instructions could be embedded in competitor ad copy—the skill's capabilities are limited to generating markdown reports and do not include high-risk tools, command execution, or network exfiltration paths. No boundary markers or sanitization are explicitly defined, but the limited capability tier makes the risk negligible.
Audit Metadata