lda-gov
What this skill does
The skill provides a CLI for interacting with the Lobbying Disclosure Act API, syncing public filings into SQLite, and performing entity resolution, anomaly checks, spend timelines, contribution total
github/mvanhorn - Tool Misuse - 1.9k stars
Threat analysis
Skill info
pkg:github/mvanhorn/printing-press-library@5a78746?skill=lda-govAssessments (1)
Tool Misuse
Tool Misuse via local-llm-review
cmd/lda-gov-pp-mcp/main.go
The code includes a transport selection mechanism that allows the agent to serve over HTTP, which could be used to expose the MCP server to remote access. This could be a risk if not properly secured.Badge
Add the Anomity scan badge for lda-gov to your README.
How Anomity governs this at runtime
Scan-time vetting tells you what a skill says it will do. Anomity's Endpoint Sensor sees what agents actually do: it discovers skills alongside every other AI artifact on the endpoint, and runtime governance can allow, deny, or log the tool calls a skill triggers. Policy violations route to your SIEM, Slack, email, or Jira, backed by a queryable 90-day audit trail.
Book a 30-minute demo to see your own skill inventory.
Methodology and disputes
Every skill is assessed by the Anomity Skill Intelligence engine against its public source; findings indicate risk patterns, not confirmed exploitation. Maintainer of lda-gov? Report an issue or request a rescan.




