Back to skill
v1.0.0

AI Affiliate Marketing Goldmine

BenignClawScan verdict for this skill. Analyzed May 1, 2026, 8:39 AM.

Analysis

This is an instruction-only affiliate-marketing workflow with no code to install; the main things to notice are its external scraping/video services, referral-style links, and optimistic income claims.

GuidanceThis appears safe to install from the supplied artifacts because it contains no executable code or privileged setup. Before using it, scope any scraping carefully, watch for paid provider usage, avoid entering confidential information, treat earnings claims skeptically, and review generated affiliate content before publishing.

Findings (4)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

Abnormal behavior control

Checks for instructions or behavior that redirect the agent, misuse tools, execute unexpected code, cascade across systems, exploit user trust, or continue outside the intended task.

Tool Misuse and Exploitation
SeverityLowConfidenceHighStatusNote
SKILL.md
Apify — Google Search Scraper ... Website Content Crawler ... Reddit Scraper ... Twitter/X Scraper ... Amazon Product Scraper

The skill explicitly relies on multiple scraper-style tools across web, social, and product sources. This matches the stated affiliate-research purpose, but it is broad enough that users should keep runs scoped and intentional.

User impactThe agent may perform broad web and social-media research that could consume provider quotas, trigger platform limits, or collect irrelevant public data if the request is not scoped.
RecommendationConfirm the niche, platforms, and target sites before running large scraping workflows, and require review before any paid, bulk, or platform-sensitive operation.
Human-Agent Trust Exploitation
SeverityLowConfidenceHighStatusNote
SKILL.md
Everything you need to build a $5,000–$50,000/month affiliate income stream — in 10 minutes ... Apify](https://www.apify.com?fpr=dx06p) ... InVideo AI](https://invideo.sjv.io/TBB)

The artifact uses strong earnings claims and includes referral-style URLs for recommended services. This does not show code-level harm, but it may bias user trust or tool choice.

User impactUsers may overestimate likely earnings or sign up for third-party services through promotional links without noticing the commercial bias.
RecommendationTreat income claims as marketing, verify tool costs independently, and review whether referral links or paid services are acceptable before proceeding.
Agentic Supply Chain Vulnerabilities
SeverityInfoConfidenceMediumStatusNote
metadata
Source: unknown; Homepage: none; No install spec — this is an instruction-only skill.

The registry provenance is limited, although there is no executable install mechanism or code package in the supplied artifacts.

User impactThere is less publisher/source context to validate, but the absence of code files limits supply-chain execution exposure.
RecommendationPrefer skills with clear source and maintainer information when possible, especially before granting access to paid provider accounts or sensitive workflows.
Sensitive data protection

Checks for exposed credentials, poisoned memory or context, unclear communication boundaries, or sensitive data that could leave the user's control.

Insecure Inter-Agent Communication
SeverityLowConfidenceHighStatusNote
SKILL.md
Powered by: Apify + InVideo AI + Claude AI ... Produce product review + comparison videos

The workflow is designed to use external AI/provider services. This is disclosed and purpose-aligned, but the artifacts do not detail provider data boundaries, retention, or costs.

User impactNiche ideas, prompts, generated marketing copy, and video instructions may be sent to third-party services during use.
RecommendationAvoid entering confidential business plans, private customer data, or sensitive credentials into the workflow unless you have reviewed the providers’ privacy and billing terms.