cursor / cursor/community-plugins

Plugin flagged pending manual review: job-application-agent

Open
#433 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
TypeScript
Stars
4k
Forks
671
Avg merge
3h 42m
Merged PRs (30d)
1

Description

Summary

Our Cursor Directory listing for job-application-agent is hidden pending manual review after the security agent flagged it.

Plugin: https://cursor.directory/plugins/job-application-agent
Repo: https://github.com/vaibhavarora14/job-application-agent (public, cloneable)

Banner on the plugin page:

Flagged by the security agent. Hidden from the directory pending manual review.

Context

  1. Listing submitted via https://cursor.directory/plugins/new after adding Open Plugins layout: skills/job-application-agent/SKILL.md (merged on main via https://github.com/vaibhavarora14/job-application-agent/pull/48).
  2. Auto-detect / scan succeeded enough to create the listing, then the security agent flagged it and hid it from the directory.
  3. The directory page does not show a specific scan reason code beyond the banner above.
  4. Repo remains public and cloneable (git ls-remote succeeds).

What this skill is

Privacy-first Agent Skill + CLI for a candidate's own job search (discover / qualify / apply / track). It:

  • Uses a verified résumé and local profile storage
  • Pauses for passwords, SSO, MFA, CAPTCHA, and legal attestations
  • Does not read cookies or session files
  • Is MIT-licensed; also listed on npm, skills.sh, SkillHub, and ClawHub

Install: npx job-application-agent@latest install

Ask

Could an admin please either:

  1. Share the concrete scan finding (so we can fix anything legitimate), and/or
  2. Clear the flag and re-run the security scan, or
  3. Delete the stuck listing so we can submit a fresh one for the same repo/name

Happy to provide any owner-account details needed. Thanks!

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start with the job-application-agent listing and its security-agent review state, then inspect skills/job-application-agent/SKILL.md and the merged pull request #48 for the submitted layout. Check the directory’s review or scan workflow for a concrete finding or a way to rerun the scan. Done means receiving a finding, clearing the flag, or deleting the stuck listing.

Written by the indexing model from the issue text.

Assessment

Tech stack
typescript
Domain
security
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Active
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.