job-application-optimizer

Pass

Audited by Gen Agent Trust Hub on Mar 6, 2026

Risk Level: SAFENO_CODEPROMPT_INJECTION
Full Analysis
  • [NO_CODE]: The skill package contains no scripts or executable files. All functionality is described as 'direct LLM capability' within the markdown file.
  • [SAFE]: No malicious patterns such as credential theft, data exfiltration, or obfuscated commands were detected.
  • [PROMPT_INJECTION]: The skill involves processing untrusted external data (job descriptions and resumes) which presents a surface for indirect prompt injection.
  • Ingestion points: User-provided job descriptions and resumes processed during JD analysis and optimization phases.
  • Boundary markers: Absent. The prompt does not specify delimiters or 'ignore' instructions for the processed content.
  • Capability inventory: None. The skill does not have access to the file system, network, or subprocess execution.
  • Sanitization: No sanitization or validation of the input data is performed.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 6, 2026, 04:19 PM