ats-resume-matcher

Pass

Audited by Gen Agent Trust Hub on May 5, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill documentation consists of instructional markdown and reference materials. There are no scripts, binaries, or automated shell commands included in the skill.- [DATA_EXFILTRATION]: The skill includes instructions to fetch data from URLs provided by the user. This is a functional capability intended for retrieving job description text from external websites and does not involve hardcoded malicious servers.- [PROMPT_INJECTION]: The skill processes untrusted user documents (resumes and job descriptions), creating a potential surface for indirect prompt injection. The agent's capabilities are limited to analytical report generation, which mitigates risk. The analysis indicates ingestion of external content through URLs and file paths without explicit boundary markers or sanitization logic in the prompts.
Audit Metadata
Risk Level
SAFE
Analyzed
May 5, 2026, 09:05 AM