linkedin-profile-optimizer
Pass
Audited by Gen Agent Trust Hub on Jul 8, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is composed of purely instructional Markdown files. It does not contain any executable scripts (Python, JavaScript, etc.) or binary files.
- [DATA_EXPOSURE]: No sensitive file paths, environment variables, or hardcoded credentials were found. The skill operates on user-provided LinkedIn profile data for the purpose of rewriting, which is consistent with its stated goal.
- [EXTERNAL_DOWNLOADS]: The skill does not perform any external network requests or downloads. All reference materials are stored in the local
references/directory. - [REMOTE_CODE_EXECUTION]: There are no patterns suggesting remote code execution, shell commands, or dynamic code evaluation.
- [PROMPT_INJECTION]: The instructions are task-oriented and do not attempt to bypass safety filters or override system instructions. The 'Hard rules' section focuses on maintaining a specific professional voice and avoiding common AI-generated clichés.
- [INDIRECT_PROMPT_INJECTION]: While the skill ingests external data (LinkedIn profiles), it lacks exploitable capabilities such as file system writes, network access, or command execution. This significantly limits the risk of indirect prompt injection attacks.
Audit Metadata