Back to skill

Security audit

Boss Zhipin

Security checks for vulnerabilities and agentic risk

Overview

This is a simple instruction-only skill for summarizing public BOSS Zhipin job and company pages, with clear limits against login, applying, chat, APIs, or bulk scraping.

Install only if you want lightweight summaries of public BOSS Zhipin listings or company pages. Keep use within the stated boundaries: do not log in, apply to jobs, message users, call private APIs, or perform bulk scraping.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.