moai-domain-database

Warn

Audited by Socket on Mar 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

No indicators of deliberate malware or obfuscated backdoors in the provided code snippets. The primary issues are insecure coding and operational practices that, if copied into production, could lead to credential exposure, SQL injection, privilege escalation, or broad data leakage (audit logs storing full rows). Treat the code as educational material that requires hardening before use: parameterize queries, avoid f-string DDL, remove/flag hardcoded credentials, adopt secret management, and restrict administrative flows. Overall security risk is moderate due to these insecure patterns, not active malicious behavior.

Confidence: 98%Severity: 75%
Audit Metadata
Analyzed At
Mar 1, 2026, 01:09 AM
Package URL
pkg:socket/skills-sh/ajbcoding%2Fclaude-skill-eval%2Fmoai-domain-database%2F@95c44cbd03770e708673a14c14e51986699d8d47