Flagged by auditors
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
failThis skill scrapes competitor ads from external platforms and saves files to the local home directory. This creates a high risk of Indirect Prompt Injection, where malicious text within an ad could manipulate the agent into performing unauthorized file operations or exfiltrating data from the user's computer.
Socket
passNo alerts
Snyk
warnRisk: MEDIUM · No issues
Runlayer
warn1/1 file flagged
ZeroLeaks
passScore: 93/100 · 2 sections analyzed