licensing-tiers-data-governance

Fail

Audited by Socket on Feb 25, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

This codebase is an implementation guide and examples for subscription-tiered access control and data governance. I found no indicators of malware, obfuscated malicious code, remote code execution, or credential exfiltration in the provided fragment. The primary security risks are operational and governance-related: immediate archival on downgrade (risk of unintended data loss or noncompliance), reliance on DB integrity for compliance/tier metadata, protection of audit logs and rate-limit counters, and ensuring admin operations are strongly authenticated and audited. Recommendation: enforce backups and a grace/restore workflow for retention actions, restrict and monitor access to audit tables, secure DB/Redis credentials and configuration, and require RBAC/MFA for tier changes.

Confidence: 98%
Audit Metadata
Analyzed At
Feb 25, 2026, 12:39 PM
Package URL
pkg:socket/skills-sh/sunnypatneedi%2Fclaude-starter-kit%2Flicensing-tiers-data-governance%2F@46259f9d51e408ebf55e3fd7707af17e6e934ab7