スキル linkedin-easy-apply
📦

linkedin-easy-apply

コンテンツリビジョン r1 高リスク ⚙️ 外部コマンド🌐 ネットワークアクセス📁 ファイルシステムへのアクセス🔑 環境変数

LinkedIn Easy Apply 検索を自動化

手動での LinkedIn Easy Apply 検索は、反復的で一貫性に欠けることがあります。このスキルは、フィルター、履歴書チェック、スキップルールを備えた制御された Puppeteer ワークフローを通じてエージェントをガイドします。

対応: Claude Codex Code(CC)
⚠️ 38 不十分

自分のエージェントでインストール

このリクエストをエージェントにコピーしてください。正規の Skill ページとマニフェストが含まれています。

エージェントリクエスト
Review the Skillstore skill "linkedin-easy-apply" from https://skillstore.io/skills/ralyodio-linkedin-easy-apply.md and its manifest at https://skillstore.io/api/skills/ralyodio-linkedin-easy-apply/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.

エージェントは引き続き計画を提示し、セキュリティポリシーで必要な確認を求める必要があります。

エージェントが読めるリソース

AI エージェント、クローラー、スクリプトがページ全体ではなく整理されたコンテキストを必要とする場合は、これらのリンクを使ってください。

テストする

「linkedin-easy-apply」を使用しています。 remote Codex と LLM engineer roles のドライ検索を実行してください。

期待される結果:

  • 要求されたキーワードに一致する 40 件の Easy Apply 求人をスキャンしました。
  • レビュー用に 6 件の応募候補を準備し、dry run が有効だったため送信は行いませんでした。
  • 完全な求人説明で hybrid work または不明瞭な回答が必要だったため、12 件の求人をスキップしました。

「linkedin-easy-apply」を使用しています。 安全な一致に応募し、報酬に関する質問の前で停止してください。

期待される結果:

  • 検証済みの履歴書情報を使って 3 件の応募を送信しました。
  • 報酬またはカスタムエッセイ項目が必須だったため、2 件の応募をスキップしました。
  • 次回の実行で重複を避けられるように状態を保存しました。

「linkedin-easy-apply」を使用しています。 日次実行を再開し、結果を要約してください。

期待される結果:

この実行では、既に送信済みの求人をスキップし、安全な一致に応募し、スキップした各求人を理由付きで報告しました。

セキュリティ監査

高リスク

Most shell-backtick detections are false positives caused by Markdown fences and inline code. Confirmed risks include sandbox-disabled Chromium, persistent browser session storage, /tmp state logs, and automated personal data submission. No prompt injection or credential exfiltration instructions were found.

1
スキャンされたファイル
175
解析済み行数
7
レビュー項目
0
誤検知を無視

確認済みのセキュリティ上の懸念 (3)

高
Environment file access
userDataDir: process.env.CHROME_PROFILE || `${process.env.HOME}/.cache/linkedin-chrome`,
The line configures a persistent Chrome user data directory that can hold authenticated LinkedIn session data. Reusing this profile is sensitive even without direct exfiltration.
高
UID/GID manipulation
args: ['--no-sandbox', '--disable-setuid-sandbox', '--disable-dev-shm-usage', '--start-maximized']
The Chromium launch arguments disable the browser sandbox and setuid sandbox. This weakens process isolation if LinkedIn or any loaded content is compromised.
中
Automated Personal Data Submission
The skill directs an agent to upload a resume and submit LinkedIn applications. This can expose personal data or submit unwanted applications if approval controls are weak.
The workflow explicitly searches LinkedIn Easy Apply, uploads a verified resume, and clicks submit when required fields are known. The context confirms automated third-party submission of personal job application data.
機能レビュー項目 (7)

これらは、このスキルに期待される可能性のある実際のローカル機能であるため、レビューが必要ですが、確認済みの悪意ある動作としてはカウントされません。

中
Hidden file access
CHROME_PROFILE=$HOME/.cache/linkedin-chrome
The skill recommends a persistent hidden Chrome profile under the user home directory. That profile can retain LinkedIn session cookies and other browser state.
中
Hidden file access
userDataDir: process.env.CHROME_PROFILE || `${process.env.HOME}/.cache/linkedin-chrome`,
Puppeteer is configured to reuse a hidden browser profile path. Persistent profiles can expose authenticated session data if permissions or isolation are weak.
中
Temp directory access
STATE_DIR=/tmp/linkedin-easyapply-daily
The suggested state directory is under /tmp. Application state in a shared temporary path can be read or tampered with on multi-user systems.
中
Temp directory access
/tmp/linkedin-easyapply-daily/state.json
The state file path is under /tmp and can contain application status. Shared temporary storage creates privacy and integrity risk.
中
Temp directory access
/tmp/linkedin-easyapply-daily/results.jsonl
The results log path is under /tmp and can contain job URLs and submission outcomes. Shared temporary storage creates privacy and tampering risk.
中
Temp directory access
State: /tmp/linkedin-easyapply-daily/state.json
The reporting section exposes the state path under /tmp. That location is a weak default for user-specific application history.
中
Temp directory access
Log: /tmp/linkedin-easyapply-daily/results.jsonl
The reporting section exposes the log path under /tmp. Logs may include personal job search activity and should not use shared temporary storage.

検出されたパターン

UID/GID manipulation
監査者: codex 監査履歴を表示 →
このレポートを共有・引用

バージョン付き評価レポート、中立的なバッジ、埋め込みカード、引用を共有できます。Skillstore は証拠を報告しますが、この Skill が安全かどうかは判断しません。

バージョン別レポートを開く
セキュリティ評価

レポートリンクをコピー

https://skillstore.io/skills/ralyodio-linkedin-easy-apply/audits/4?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_report

Markdownバッジ

[![Skillstore security assessment](https://skillstore.io/badges/skills/ralyodio-linkedin-easy-apply/security.svg)](https://skillstore.io/skills/ralyodio-linkedin-easy-apply?utm_source=security_passport_badge)

HTMLバッジ

<a href="https://skillstore.io/skills/ralyodio-linkedin-easy-apply?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/ralyodio-linkedin-easy-apply/security.svg" alt="Skillstore security assessment" loading="lazy"></a>

埋め込みカード

<iframe src="https://skillstore.io/embed/skills/ralyodio-linkedin-easy-apply.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>
学術引用 (APA · BibTeX · CFF)

APA形式の引用

ralyodio. (2026). linkedin-easy-apply security audit report (audit version 4) [Author version unspecified]. Skillstore. https://skillstore.io/skills/ralyodio-linkedin-easy-apply/audits/4

BibTeX形式の引用

@techreport{ralyodio-ralyodio-linkedin-easy-apply-2026, author = {ralyodio}, title = {linkedin-easy-apply security audit report (audit version 4)}, institution = {Skillstore}, year = {2026}, number = {4}, url = {https://skillstore.io/skills/ralyodio-linkedin-easy-apply/audits/4}, note = {Author version unspecified} }

CITATION.cff

cff-version: 1.2.0 message: "If you use this Skill, cite its author and this versioned security audit report." title: "linkedin-easy-apply security audit report (audit version 4)" version: "unspecified" type: report authors: - name: "ralyodio" date-released: "2026-07-05" url: "https://skillstore.io/skills/ralyodio-linkedin-easy-apply/audits/4" identifiers: - type: other value: "skillstore:ralyodio-linkedin-easy-apply:audit:4" description: "Skillstore immutable audit report identifier"

Skillstore スコア

このスコアの理由 証拠の信頼度: 中
55
アーキテクチャ
85
保守性
87
コンテンツ
68
コミュニティ
83
仕様準拠

作成できるもの

絞り込んだリモート求人検索を実行

リモート限定とキーワードフィルターを使って Easy Apply の求人を検索し、安全な一致のみを送信します。

日次の応募進捗を追跡

重複応募を避けるために状態ファイルを再利用し、送信済みまたはスキップ済みの求人を報告します。

応募自動化ルールをテスト

実際の送信を有効にする前に、履歴書で裏付けられた回答ルールとスキップ動作を検証します。

これらのプロンプトを試す

ドライランを設定
LinkedIn Easy Apply スキルを dry-run mode で使用してください。私の resume path、target keywords、location、maximum scan count を設定してください。応募は送信しないでください。
リモート AI 職を検索
United States の remote AI、LLM、software engineer roles を対象に LinkedIn Easy Apply を検索してください。hybrid roles と不明瞭な必須質問はスキップしてください。
送信前に確認
一致する Easy Apply の求人を見つけ、検証済みの履歴書情報で各応募を準備してください。最終送信の前に一時停止し、各求人が送信して安全である理由を示してください。
日次自動化を再開
state file から昨日の LinkedIn Easy Apply 実行を再開してください。重複を避け、apply limit を守り、送信済み、スキップ済み、既に送信済みの求人を報告してください。

ベストプラクティス

  • dry-run mode から開始し、送信を有効にする前に準備されたすべての応募を確認します。
  • 専用のブラウザープロファイルを使用し、LinkedIn 認証情報をスクリプトやログに含めないようにします。
  • 求人キーワードを絞り込み、応募前に完全な求人説明を確認します。

回避

  • 自動化実行にメインの個人用ブラウザープロファイルを再利用しないでください。
  • 応募者情報を捏造したり、汎用的なページテキストから承認を推測したりしないでください。
  • 必須項目が不明瞭または主観的な場合は、応募を送信しないでください。

よくある質問

このスキルは LinkedIn 認証情報を保存しますか?
いいえ。ブラウザープロファイルを通じた手動ログインを推奨し、認証情報をスクリプトやログに保存しないよう警告します。
応募を自動的に送信できますか?
はい。ただし、ワークフローが不明な必須項目を見つけなかった場合に限ります。オペレーターによるレビューをデフォルトにする方が安全です。
リモート限定検索に対応していますか?
はい。リモート限定フィルタリングを含み、完全な求人説明を再確認して hybrid または勤務地の制約を検出します。
CAPTCHA や MFA が発生した場合はどうなりますか?
このスキルは、CAPTCHA、MFA、本人確認、不審なログインのプロンプトでエージェントに停止するよう指示します。
カスタムエッセイの質問に回答できますか?
いいえ。承認されない限り、カスタムエッセイ、カバーレターのプロンプト、報酬に関する質問、不明瞭な必須入力はスキップします。
このスキルを使用できるツールはどれですか?
レポートには Claude、Codex、Claude Code のサポートが記載されています。

開発者情報

作成者

ralyodio

ライセンス

MIT

Skillstore リビジョン

r1

バージョンに関する注意

作者はバージョンを宣言していません。

参照

62e2a730c5cd74eab4c7164309d810de660fcea3

メンテナンスの新しさ

2026/7/22

利用状況

3 ダウンロード · 72 閲覧

ファイル構成

📄 SKILL.md

ralyodio のその他のスキル

すべて表示
すべて表示