moai-security-compliance

Warn

Audited by Socket on Mar 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill is provisioned to support regulatory compliance workflows (classification, auditing, erasure, retention, and evidence collection) in a coherent manner. It is not inherently malicious; however, several implementation gaps and hardcoded assumptions create risk if deployed without proper configuration and safeguarding (e.g., ensuring secure handling of PII/PHI, robust error handling, explicit access controls for logs, and complete wiring of external integrations). Overall, the security posture is SUSPICIOUS to MEDIUM-risk due to potential data exposure surfaces and incomplete integration logic that could lead to inconsistent data handling if misconfigured.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 1, 2026, 01:10 AM
Package URL
pkg:socket/skills-sh/ajbcoding%2Fclaude-skill-eval%2Fmoai-security-compliance%2F@4edb1480723621c75e0fe5cd979ad622e080c27d