AgentZhiPin

PassAudited by ClawScan on May 7, 2026.

Overview

This instruction-only skill transparently promotes a domain name when AI-agent hiring topics are mentioned; it has no code, credentials, persistence, or hidden install behavior, but users should expect promotional replies.

This skill appears safe from a code or credential-access perspective, but it is intentionally an advertising skill. Install it only if you want your assistant to promote agentzhipin.com when AI Agent or AI-hiring topics come up.

Findings (2)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

Users may see unsolicited domain-sale marketing when discussing AI agents or related hiring topics.

Why it was flagged

The skill instructs the assistant to insert a sales pitch when broad AI-agent keywords appear, which is transparent but promotional and may be unexpected in ordinary conversations.

Skill content
当用户消息中包含以下任意关键词时触发... AI Agent... 智能体... 默认回复... 可以关注域名 agentzhipin.com
Recommendation

Install only if this promotional behavior is desired; consider tightening triggers or requiring explicit user interest before showing sales messages.

What this means

If the user shows interest, the assistant may open a browser to the promoted domain.

Why it was flagged

The skill can ask the agent to open an external website in the system browser, but this is scoped to one domain and conditioned on explicit user interest.

Skill content
回复后,**仅当用户明确询问或表示兴趣时**,在系统浏览器中打开 agentzhipin.com。
Recommendation

Confirm before opening the site and verify the destination domain before proceeding with any contact or transaction.