linkedin-outreach

linkedin-outreach is a skill for Claude Code, Codex from ericrisco/rsc-harness. It costs 79 tokens per session (2,807 once invoked), scanned A, original, MIT.

A system for running LinkedIn social selling as a repeatable process. It covers choosing people to contact, warming up relationships through engagement, setting sending limits, and recording each interaction.

In plain words
What is it for?
It helps manage saved searches, alerts, weekly connection budgets, warm leads from profile views or post engagement, and a contact history.
Why use it?
It prevents outreach from becoming random or relying on memory, and helps teams avoid contacting people before there is a useful signal.

Skill for Claude CodeCodex

Written for no agent in particular: nothing here depends on one. Also seen: positional $N argument.

Good fit It helps manage saved searches, alerts, weekly connection budgets, warm leads from profile views or post engagement, and a contact history.

Compare 6 skills from other repositories ↓
Install with agentmods
npx agentmods add skills/ericrisco/rsc-harness/linkedin-outreach
Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

Any agent
npx skills add ericrisco/rsc-harness --skill linkedin-outreach
Clone the repo
git clone --depth 1 https://github.com/ericrisco/rsc-harness

Made for: Claude Code, Codex.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for linkedin-outreach

README.md
[![agentmods](https://agentmods.dev/badge/skills/ericrisco/rsc-harness/linkedin-outreach/github.svg)](https://agentmods.dev/skills/ericrisco/rsc-harness/linkedin-outreach)
Your own site
<a href="https://agentmods.dev/skills/ericrisco/rsc-harness/linkedin-outreach"><img src="https://agentmods.dev/badge/skills/ericrisco/rsc-harness/linkedin-outreach/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for linkedin-outreach

Your own site · 80×15
<a href="https://agentmods.dev/skills/ericrisco/rsc-harness/linkedin-outreach"><img src="https://agentmods.dev/badge/skills/ericrisco/rsc-harness/linkedin-outreach.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 79 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 2,807 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe. Third-party audits
  • NVIDIA SkillSpector pass 7 Sept 2026
How audits are shown
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00079 $0.02807
Opus 5 $0.00039 $0.01404
Sonnet 5 $0.00016 $0.00561
Haiku 4.5 $0.00008 $0.00281

Measured 8d ago against content hash ac85603a0516, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-12, from the pricing page.

Security

Grade A, and why

linkedin-outreach scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.

The scan reads SKILL.md. This mod also ships 1 executable file (scripts/verify.sh), listed below but not scanned — reading those needs a real analyzer, not pattern matching.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

skills/linkedin-outreach/SKILL.md · 155 lines

How it starts

The opening of the file, as written. The whole thing — 155 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Linkedin Outreach — The Loop and Its Ledger

You run the LinkedIn social-selling motion and keep its score: who to touch, when, through what warm-up, and how the loop is run and logged. The thesis is warm-first — engagement before connection, signal before send, ledger before "I'll remember it." The output is a running system plus a touch ledger under 02-DOCS/, never a finished line of copy: when prose is needed you write the brief and hand it off, then stay in the loop.

Boundary

The sharpest line is against ../cold-outreach/SKILL.md, and it splits on message-vs-system:

  • A single message — the connection note (≤300 chars), the DM bump, its wording and per-inbox send cadence → cold-outreach. If the ask is "write this" or "fix this template," it is not yours.
  • The system — who to touch, when, the warm-up, the budget, the ledger → here. When both are in play, this skill drives and delegates the copy.

Also not yours: sourcing / scoring the raw prospect list and ICP definition → ../lead-gen/SKILL.md; the deal after a reply, i.e. stages, forecast, CRM tasks → ../sales-pipeline/SKILL.md; writing or scheduling LinkedIn posts../linkedin-content/SKILL.md; brand growth and positioning → ../linkedin-strategy/SKILL.md.

The loop

Five phases, in order. Each has a why and yields one artifact; the artifact gates the next phase. Skipping a phase is how acceptance collapses.

  1. Targetwhy: outreach timed to a reason beats outreach timed to a calendar. → Yields a Sales Nav saved search + trigger alerts (job change, funding, recent post).
  2. Warmwhy: a cold, context-free request is the worst-accepting move you can make; engaging first is what fixes it. → Yields a logged pre-touch (profile view + one genuine comment/like 1–2 days prior).
  3. Connectwhy: the request is the smallest, most rate-limited move; spend it deliberately. → Yields a sent request inside the weekly budget, note-or-no-note chosen by goal.
  4. Convertwhy: an accept is not a conversation; the choreography turns a signal into a warm 1:1. → Yields a thread with a real reply, copy delegated to cold-outreach when needed.
  5. Logwhy: a motion you can't measure you can't repeat or fix. → Yields a row in the 02-DOCS/ ledger with the outcome.

Read the full file on GitHub · 155 lines

Files

What ships with it

5 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 8d ago First seen · 155 lines · 79 tokens per session scan A ac85603a0516

Subscribe to this mod's changes

linkedin-outreach is a skill published in the GitHub repository ericrisco/rsc-harness (82 stars, last pushed yesterday), licensed MIT. It adds 79 tokens to every session and 2,807 once invoked, about $0.0004 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.

Related

Other skills, from other repositories

building-automated-malware-submission-pipeline

Builds an automated malware submission and analysis pipeline that collects suspicious files from endpoints and email gateways, submits them to sandbox environments and multi-engine scanners, and generates verdicts with IOCs for SIEM integration. Use when SOC teams need to scale malware analysis beyond manual sandbox…

adriannoes/awesome-agentic-ai · 72 tokens

merge-aliases

Folds two surface names for the same backend system into one canonical entity, keeping every original mention individually retrievable, and refuses to merge pairs that only share spelling.

ayeshakhalid192007-dev/graph-engineering-crash-course · 37 tokens

anchor-and-lock

Consults a check that sits outside the loop system before finalizing any decision the frozen facts bear on, and refuses every attempt by a loop to rewrite a node marked frozen, regardless of how convergent the loop's own reasoning looks.

ayeshakhalid192007-dev/graph-engineering-crash-course · 50 tokens

query-graph

Loads schema.sql into a local SQLite file, then answers availability and provenance questions against the nodes/edges tables with real SQL instead of re-reading source material.

ayeshakhalid192007-dev/graph-engineering-crash-course · 34 tokens

build-subgraph

Traverses a full graph and returns a bounded subgraph around one target node -- its depth-bounded dependencies plus any disputed claims attached to it -- while proving everything else was left out.

ayeshakhalid192007-dev/graph-engineering-crash-course · 40 tokens

arbitrate-collision

Detects when two loops have proposed conflicting writes to the same node and field at close to the same time, applies a stated priority rule to accept exactly one, and records the rejected write with the reason it lost.

ayeshakhalid192007-dev/graph-engineering-crash-course · 48 tokens