reddit-ads

Security checks across malware telemetry and agentic risk

Overview

This is a guidance-only Reddit Ads skill with no code, credential use, account access, or hidden behavior.

Safe to install as an advisory helper. Review budgets, targeting choices, and ad claims before spending money or publishing campaigns, and use an organic Reddit skill instead when the task is about non-paid posting, moderation, or community engagement.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
90% confidence
Finding
The invocation description is broad enough to match generic mentions like "Reddit communities," which can cause this paid-ads skill to activate when the user is asking about organic Reddit activity rather than advertising. That misrouting can lead to inappropriate guidance, incorrect workflow selection, and downstream actions taken under the wrong business context.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal