Ecommerce Ppc Strategy Planner

Security checks across static analysis, malware telemetry, and agentic risk

Overview

This looks like a benign instruction-only PPC planning skill with no code or credentials, but users should verify the external global install command before running it.

Before installing, verify the external repository referenced by the npx command. When using the skill, only share business margin, budget, and campaign performance data you are comfortable providing, and treat the generated PPC strategy as planning guidance rather than automatic ad-account changes.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

#
ASI04: Agentic Supply Chain Vulnerabilities
Low
What this means

Running the command would trust an external package/source for a global skill install.

Why it was flagged

The artifact includes a user-directed global install command that references an external repository. This is expected installation documentation, not automatic execution, but users should verify the source before running it.

Skill content
npx skills add nexscope-ai/eCommerce-Skills --skill ecommerce-ppc-strategy-planner -g
Recommendation

Verify the repository and package source before running the install command, and prefer reviewed or pinned sources when available.