upwork-invitation-responder
Pass
Audited by Gen Agent Trust Hub on Jul 23, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: The skill provides a surface for indirect prompt injection by ingesting untrusted job invitation text pasted by the user. However, the analysis shows that the skill possesses no dangerous capabilities such as network access, file writing, or command execution. Consequently, the risk is negligible as the agent only generates text drafts based on the input.
- [DATA_EXFILTRATION]: The skill is designed to read a local configuration file (
upwork-profile.mdor files within~/.claude/) to retrieve user profile information. This is a legitimate functional feature for personalizing response drafts and does not involve any exfiltration or transmission of data to external services.
Audit Metadata