Skills email-quality-auditor
๐Ÿ“ฆ

email-quality-auditor

v19.0.0 Content revision r2 Safe โš™๏ธ External commands๐ŸŒ Network access๐Ÿ“ Filesystem access

Audit an email send before release

Email teams can miss consent, suppression, authentication, and claim risks before a campaign launches. This skill applies a structured SEND review and states the evidence, gaps, score state, and release verdict.

Supports: Claude Codex Code(CC)
๐Ÿฅ‰ 77 Bronze

Install with my Agent

Copy this request to your Agent. It includes the canonical Skill page and manifest.

Agent request
Review the Skillstore skill "email-quality-auditor" from https://skillstore.io/skills/aaron-he-zhu-email-quality-auditor.md and its manifest at https://skillstore.io/api/skills/aaron-he-zhu-email-quality-auditor/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.

Your Agent should still show its plan and request any confirmation required by the security policy.

Test it

Using "email-quality-auditor". A newsletter has aligned authentication, current suppressions, consent records, and complete performance data.

Expected outcome:

  • Verdict: SHIP
  • Score: 81 with high confidence
  • No verified vetoes found
  • Continue provider monitoring and preserve evidence sources

Using "email-quality-auditor". A promotional send has no consent provenance and no current suppression export.

Expected outcome:

  • Verdict: UNDECIDED
  • Score state: NOT_SCORED
  • Unknown inputs: consent provenance and live suppression status
  • Next step: provide dated consent events and a current suppression replay

Using "email-quality-auditor". A campaign uses a verified purchased list and ignores an opt-out record.

Expected outcome:

  • Verdict: BLOCK
  • Verified controls failed: list provenance and opt-out handling
  • Do not send until the list is remediated and suppressions are honored

Security Audit

Safe
v7 โ€ข 7/26/2026 Open versioned report

All 34 static findings are false positives caused by Markdown backticks, fixed local reference links, and homepage metadata. The reviewed instructions emphasize evidence-based email audits, prohibit autonomous sending and provider changes, and require explicit authorization before persistence. No prompt injection, exfiltration intent, or user-controlled command or path execution was found.

2
Files scanned
374
Lines analyzed
0
Review items
0
False positives ignored
No confirmed security findings were detected by the latest completed static and semantic audit. This does not prove the skill has no side effects.
Audited by: claude View Audit History โ†’
Share & cite this report

Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.

Open versioned report
Security Assessment

Copy report link

https://skillstore.io/skills/aaron-he-zhu-email-quality-auditor/audits/7?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_report

Markdown badge

[![Skillstore security assessment](https://skillstore.io/badges/skills/aaron-he-zhu-email-quality-auditor/security.svg)](https://skillstore.io/skills/aaron-he-zhu-email-quality-auditor?utm_source=security_passport_badge)

HTML badge

<a href="https://skillstore.io/skills/aaron-he-zhu-email-quality-auditor?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/aaron-he-zhu-email-quality-auditor/security.svg" alt="Skillstore security assessment" loading="lazy"></a>

Embed card

<iframe src="https://skillstore.io/embed/skills/aaron-he-zhu-email-quality-auditor.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>
Academic citations (APA ยท BibTeX ยท CFF)

APA citation

aaron-he-zhu. (2026). email-quality-auditor security audit report (audit version 7) [Author version 19.0.0]. Skillstore. https://skillstore.io/skills/aaron-he-zhu-email-quality-auditor/audits/7

BibTeX citation

@techreport{aaron-he-zhu-aaron-he-zhu-email-quality-auditor-2026, author = {aaron-he-zhu}, title = {email-quality-auditor security audit report (audit version 7)}, institution = {Skillstore}, year = {2026}, number = {7}, url = {https://skillstore.io/skills/aaron-he-zhu-email-quality-auditor/audits/7}, note = {Author version 19.0.0} }

CITATION.cff

cff-version: 1.2.0 message: "If you use this Skill, cite its author and this versioned security audit report." title: "email-quality-auditor security audit report (audit version 7)" version: "19.0.0" type: report authors: - name: "aaron-he-zhu" date-released: "2026-07-26" url: "https://skillstore.io/skills/aaron-he-zhu-email-quality-auditor/audits/7" identifiers: - type: other value: "skillstore:aaron-he-zhu-email-quality-auditor:audit:7" description: "Skillstore immutable audit report identifier"

Skillstore Score

Why this score Evidence Confidence: Medium
41
Architecture
100
Maintainability
87
Content
67
Community
91
Spec Compliance

What You Can Build

Release a promotional campaign

Check a planned promotion for authentication, consent, opt-out, and claim blockers before the marketing team sends it.

Assess newsletter program health

Review a newsletter over a defined period and identify evidence gaps, engagement caveats, and operational fixes.

Prepare an audit record

Create an evidence-based readiness assessment that separates verified controls from unknown inputs for internal review.

Try These Prompts

Review a newsletter
Audit this newsletter for the last 90 days. I will provide provider reports, consent records, suppression status, and campaign results.
Check a promotional send
Review this promotional email before release. Check DMARC, consent events, live suppressions, rendered copy, and order evidence. Mark missing evidence as Unknown.
Compare provider cohorts
Audit this retention program across providers for the declared window. Reconcile cohorts, segment Apple Mail Privacy Protection exposure, and assess direct actions separately from opens.
Request a release trace
Perform a SEND audit for this cold-outbound program. Provide a trace for each veto check, list source dates and confidence, and return UNDECIDED if evidence is incomplete.

Best Practices

  • Provide dated source evidence for each claim, metric, and control.
  • Declare the program type, market, provider, and observation window before scoring.
  • Treat unknown evidence as unknown instead of assuming a control passed.

Avoid

  • Do not use open rate alone to claim recipient attention or campaign success.
  • Do not treat missing consent records as proof that consent exists.
  • Do not request a release verdict without current suppression and claim evidence.

Frequently Asked Questions

Does this skill send email?
No. It audits readiness and does not send messages or change provider settings.
What evidence should I provide?
Provide authentication data, consent and suppression records, rendered content, provider reports, and outcome records.
Can it review a single campaign?
Yes. It can perform a send-only review and identifies the evidence needed for a complete program score.
What happens when evidence is missing?
The skill marks the affected item as Unknown and may return an UNDECIDED or NOT_SCORED result.
Does it measure inbox placement?
It reviews supplied placement and provider evidence, but DNS data alone cannot prove inbox placement.
Is this legal compliance advice?
No. It supports operational review and does not replace legal or regulatory advice.

Developer Details

License

Apache-2.0

Author version

v19.0.0

Skillstore revision

r2

Ref

adcb3549b15782055d0beb6d29f113d20de08f92

Maintenance freshness

7/28/2026

Usage

2 downloads ยท 0 views

File structure

๐Ÿ“ references/

๐Ÿ“„ auditor-runtime.md

๐Ÿ“„ SKILL.md

More from aaron-he-zhu

View all
View all