mod-actions
What this skill does
Moderation toolkit for Civitai, enabling user actions (ban/mute/DM), strike system, image moderation, report handling, generation moderation, content/training moderation, and NCMEC/CSAM reporting via
github/civitai - Privilege Escalation - 7.2k stars
Threat analysis
Skill info
pkg:github/civitai/civitai@159f535?skill=mod-actionsAssessments (2)
Privilege Escalation
Privilege Escalation via local-llm-review
csam.mjs
The 'create-report' command requires --confirm to submit NCMEC reports, but the script does not enforce this requirement in code. This could allow automated agents to submit reports without explicit hInsecure Defaults
Insecure Defaults via local-llm-review
SKILL.md
The setup instructions mention copying '.env-example' to '.env' and adding a Civitai API key. If the '.env-example' file contains any default values or insecure configurations, this could be a risk.Badge
Add the Anomity scan badge for mod-actions to your README.
How Anomity governs this at runtime
Scan-time vetting tells you what a skill says it will do. Anomity's Endpoint Sensor sees what agents actually do: it discovers skills alongside every other AI artifact on the endpoint, and runtime governance can allow, deny, or log the tool calls a skill triggers. Policy violations route to your SIEM, Slack, email, or Jira, backed by a queryable 90-day audit trail.
Book a 30-minute demo to see your own skill inventory.
Methodology and disputes
Every skill is assessed by the Anomity Skill Intelligence engine against its public source; findings indicate risk patterns, not confirmed exploitation. Maintainer of mod-actions? Report an issue or request a rescan.




