T08 · Insecure Dependencies
- Location
SKILL.md:10- Finding
Unpinned Globally Installed Executable Dependency
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
This is a coherent resume and cover-letter API skill, but users should understand it sends personal document data to useresume.ai and installs an unpinned npm CLI.
Install only if you are comfortable sending resume, cover-letter, job-description, and related personal data to useresume.ai. Prefer reviewing or pinning the npm CLI version before global installation, and avoid uploading third-party documents unless you have permission.
SKILL.md:10Unpinned Globally Installed Executable Dependency
The README instructs users to create, tailor, and parse resumes and cover letters through an external API, which necessarily involves transmitting highly sensitive personal data such as names, email addresses, employment history, education, and potentially other identifying details. There is no warning about the privacy implications, data handling, retention, or the need to obtain consent before uploading third-party documents, which increases the risk of inadvertent sensitive-data disclosure by agents or users.
Skill establishes unauthorized persistence across sessions via cron jobs, startup scripts, or state files. Session persistence allows an attacker to maintain access beyond the current interaction.
# Create a resume (1 credit)
useresume resume:create --input resume.json
# Create a tailored resume for a specific job (5 credits)
The skill sends highly sensitive personal data—including resumes, cover letters, contact details, employment history, education, references, and potentially demographic fields—to a third-party API, but the description and usage guidance do not prominently warn users about that external transmission. This can cause unintended disclosure of private or regulated data because an agent may invoke the skill without ensuring the user understands where their documents and extracted contents are being sent.
No suspicious patterns detected.