Ads Bid Optimizer

Security checks across malware telemetry and agentic risk

Overview

This is a text-only advertising budget and bidding planning skill with no code execution, account access, persistence, or hidden data handling.

Install this for paid advertising planning, not for general finance or business strategy. Review any budget, bidding, or stop-loss recommendation against real ad-platform data before applying changes in an account.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
94% confidence
Finding
The trigger section is broad enough to match many generic business and marketing queries such as revenue, profit, growth, budget, and campaign discussions, which increases the chance this skill activates outside its intended niche. Unintended activation can cause the agent to route users into specialized ad-optimization guidance when they were asking for broader strategy help, leading to inappropriate recommendations and unsafe overreach in decision-making.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal