Openclaw Google Ads

Security checks across malware telemetry and agentic risk

Overview

This is a coherent Google Ads reporting and audit skill, but it should be used carefully because it works with real ad account data and OAuth credentials.

Install only if you intend the agent to analyze authorized Google Ads accounts. Keep OAuth tokens in secure secret storage, avoid pasting refresh tokens or raw exports into chats or tracked files, verify account IDs and date ranges before sharing reports, and require separate explicit approval for any live account changes.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal