asc-apple-ads — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited asc-apple-ads (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Use this skill when a task involves Apple Ads or asc ads.
asc ads --help or the specific subgroup help before scripting a command.asc auth login does not configure asc ads.--output json.--org for one-off commands and ASC_ADS_ORG_ID for a scoped session.--file.Stored profile:
asc ads auth login \
--name "Marketing" \
--client-id "$ASC_ADS_CLIENT_ID" \
--team-id "$ASC_ADS_TEAM_ID" \
--key-id "$ASC_ADS_KEY_ID" \
--private-key "$ASC_ADS_PRIVATE_KEY_PATH" \
--org "$ASC_ADS_ORG_ID" \
--networkEnvironment auth:
export ASC_ADS_CLIENT_ID="SEARCHADS_CLIENT_ID"
export ASC_ADS_TEAM_ID="SEARCHADS_TEAM_ID"
export ASC_ADS_KEY_ID="KEY_ID"
export ASC_ADS_PRIVATE_KEY_PATH="$HOME/.asc/apple-ads-private-key.pem"
export ASC_ADS_ORG_ID="123456"Short-lived token auth:
export ASC_ADS_ACCESS_TOKEN="ACCESS_TOKEN"
export ASC_ADS_ORG_ID="123456"Useful checks:
asc ads auth status --validate --output json
asc ads auth doctor --output json
asc ads me view --output json
asc ads acls --output jsonWhen the org ID is unknown:
asc ads acls --output jsonUse the returned org ID:
asc ads campaigns --org "123456" --limit 10 --output jsonOrg precedence is --org, ASC_ADS_ORG_ID, stored profile org_id, then config ads.org_id.
Campaigns and ad groups:
asc ads campaigns --org "123456" --limit 100 --output json
asc ads campaigns --org "123456" --paginate --output json
asc ads campaigns view --org "123456" --campaign 987654321 --output json
asc ads ad-groups list --org "123456" --campaign 987654321 --output jsonDiscovery:
asc ads apps search --org "123456" --query "My App" --limit 10 --output json
asc ads product-pages list --org "123456" --adam-id 1234567890 --states VISIBLE --output json
asc ads creatives list --org "123456" --limit 100 --output json
asc ads geo search --org "123456" --query "San Francisco" --country-code US --limit 10 --output jsonReports:
asc ads reports campaigns --org "123456" --file reporting-request.json --output json
asc ads reports keywords --org "123456" --campaign 987654321 --file reporting-request.json --output jsonReporting and find endpoints keep pagination in the JSON body.
Create and update commands take Apple Ads JSON files:
asc ads campaigns create --org "123456" --file campaign.json --output json
asc ads campaigns update --org "123456" --campaign 987654321 --file campaign-update.json --output json
asc ads ad-groups create --org "123456" --campaign 987654321 --file ad-group.json --output jsonBulk endpoints often require arrays:
asc ads targeting-keywords create-bulk \
--org "123456" \
--campaign 987654321 \
--ad-group 123456789 \
--file keywords.json \
--output jsonDelete commands require --confirm:
asc ads targeting-keywords delete-bulk \
--org "123456" \
--campaign 987654321 \
--ad-group 123456789 \
--file keyword-ids.json \
--confirm \
--output json
asc ads campaigns delete --org "123456" --campaign 987654321 --confirmFor live tests, create paused resources with names such as ASC CLI Live Test <timestamp>. Clean up only the parent campaign or ad group created for that test. Apple may reject direct deletion for default product page creative ads, but deleting the test parent campaign or ad group can clean up the test resource.
Use raw requests when Apple adds a field before the first-class command surface changes:
asc ads api request \
--method POST \
--path v5/campaigns/find \
--org "123456" \
--file selector.json \
--output jsonRaw requests accept only Apple Ads v5 paths or https://api.searchads.apple.com/api/v5/... URLs. DELETE still requires --confirm.
asc ads me view --output json and asc ads acls --output json.~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.