Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add modu-ai/moai-cowork --skill legal-compliance-checkgit clone --depth 1 https://github.com/modu-ai/moai-coworkWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/modu-ai/moai-cowork/legal-compliance-check)<a href="https://agentmods.dev/skills/modu-ai/moai-cowork/legal-compliance-check"><img src="https://agentmods.dev/badge/skills/modu-ai/moai-cowork/legal-compliance-check/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/modu-ai/moai-cowork/legal-compliance-check"><img src="https://agentmods.dev/badge/skills/modu-ai/moai-cowork/legal-compliance-check.svg" alt="Reviewed on agentmods" width="80" height="20"></a>- NVIDIA SkillSpector pass
What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00101 | $0.02144 |
| Opus 5 | $0.00051 | $0.01072 |
| Sonnet 5 | $0.00020 | $0.00429 |
| Haiku 4.5 | $0.00010 | $0.00214 |
Grade A, and why
legal-compliance-check scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 183 lines — stays where its author put it; the contents beside it link to each section on GitHub.
컴플라이언스 점검 (Compliance Check)
개요
기업의 규제 준수 여부를 체계적으로 점검하고 내부 감사 보고서를 작성한다. 개인정보보호법·노동법·금융규제 등 한국 주요 법령 기준 컴플라이언스 갭 분석, ESG 보고서 작성(K-ESG, GRI, TCFD), 2026년 개정 법령 반영 규제 리스크 평가를 제공한다.
면책 고지: AI 보조 분석이며 전문 법률 자문을 대체하지 않습니다
트리거 키워드
컴플라이언스, 규제 준수, 감사, 내부 감사, ESG, 환경경영, 인허가, 규제, 갭 분석, K-ESG, GRI, TCFD, 지속가능경영, ISMS-P, 개인정보보호
워크플로우
1단계: 점검 영역 확인
규제 도메인 선택:
- 개인정보·데이터 (개인정보보호법, 정보통신망법, ISMS-P)
- 노동·인사 (근로기준법, 산업안전보건법, 중대재해처벌법)
- 공정거래 (공정거래법, 표시광고법)
- 금융·핀테크 (금융위 규정, 전자금융거래법)
- 환경·안전 (중대재해처벌법, 환경법)
- ESG·지속가능성 (K-ESG, GRI, TCFD)
산출물 유형:
- 컴플라이언스 점검 보고서
- 갭 분석 (현황 vs 요구사항)
- 내부 감사 보고서
- ESG 보고서
2단계: 2026년 주요 규제 변화 체크
2026년 개정 법령 변화 목록(개인정보보호법·노동 관련·K-IFRS 제1118호)은 이 스킬의
references/2026-law-changes.md단일 SSOT를 참조한다. 변경 시 해당 파일만 갱신한다.
3단계: 컴플라이언스 점검
핵심 체크 항목:
- 관련 법령 및 규제 현황 파악
- 현재 프로세스·정책 대비 요구사항 갭 분석
- 위반 시 제재 수준 및 리스크 분류
- 즉시 조치 필요 사항 vs 단계적 개선 항목 분류
리스크 평가:
리스크 우선순위 = 발생 가능성 × 영향도 × 규제 강도
높음(H): 즉시 대응 필요 (과징금, 형사처벌 가능)
중간(M): 3개월 내 대응 계획 수립
낮음(L): 모니터링 유지
4단계: 감사 보고서 작성 (선택)
# 내부 감사 보고서
## 감사 개요
- 기간, 대상, 방법론
## 주요 발견사항
- 고위험 항목 (즉시 시정 필요)
- 중위험 항목 (3개월 내 시정)
- 저위험 항목 (모니터링)
## 세부 감사 결과
- 항목별 준수 여부, 갭 분석
## 권고사항 및 시정 계획
- 단기/장기 개선 방안
## 후속 조치 일정
5단계: ESG 보고서 구성 (선택)
K-ESG 가이드라인 기준:
E(환경):
- 온실가스 배출량 (Scope 1, 2, 3)
- 에너지 사용량 (재생에너지 비중)
- 폐기물 관리 (재활용률)
- 수자원 사용량
S(사회):
- 임직원 (성별 비율, 이직률, 교육 훈련 시간)
- 공급망 (윤리 경영, 인권 보호)
- 지역사회 (사회공헌 활동)
- 고객 (개인정보 보호, 데이터 보안)
G(지배구조):
- 이사회 구성 (독립사외 비율, 여성 임원 비율)
- 감사 (내부감사 시스템)
- 윤리·반부패 (윤리강령, 신고 채널)
GRI·TCFD 연계:
- GRI 표준 공시 지표
- TCFD 권고사항 (거버넌스, 전략, 리스크 관리, 지표 및 목표)
사용 예시
예시 1: "우리 스타트업 개인정보 컴플라이언스 점검해줘. 월 MAU 10만명 서비스" → 관련 법령 체크 → 갭 분석 → 즉시 조치 항목 → 개선 로드맵
예시 2: "중소기업 ESG 보고서 초안 만들어줘. K-ESG 기준으로" → K-ESG 지표 확인 → 섹션별 데이터 요청 → 보고서 초안 → 검토
예시 3: "ISMS-P 인증 준비 위한 갭 분석해줘" → ISMS-P 요구사항 → 현재 현황 → 갭 분석 → 시정 계획
산출물
- 컴플라이언스 점검 보고서 (우선순위 포함)
- 규제 갭 분석 리포트
- 내부 감사 보고서
- ESG 보고서 초안 (K-ESG, GRI, TCFD)
- 시정 계획 및 로드맵
What ships with it
6 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 8d ago First seen · 183 lines · 101 tokens per session scan A 9c1327746177
legal-compliance-check is a skill published in the GitHub repository modu-ai/moai-cowork (300 stars, last pushed 9d ago), licensed Apache-2.0. It adds 101 tokens to every session and 2,144 once invoked, about $0.0005 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.
Other skills, from other repositories
penalista-atti
Redazione di atti processuali penali italiani con formule corrette e struttura giuridicamente appropriata. ATTIVARE SEMPRE quando l'avvocato chiede di scrivere, redigere, preparare o impostare uno di questi atti: memoria difensiva, atto di appello, ricorso per Cassazione, istanza di riesame, istanza di revoca o…
penalista-cautelare
Workflow completo per le misure cautelari personali nel processo penale italiano. ATTIVARE SEMPRE per: riesame cautelare, appello de libertate, revoca o sostituzione misura cautelare, calcolo termini di fase della custodia cautelare, istanza di scarcerazione per scadenza termini, analisi dei presupposti cautelari…
penalista-giurisprudenza
Ricerca e organizzazione della giurisprudenza penale italiana per la difesa. ATTIVARE SEMPRE quando l'avvocato cerca sentenze, massime o orientamenti della Cassazione penale, della Corte EDU o di altri organi giurisdizionali, o dice: 'cerca giurisprudenza su', 'ci sono sentenze favorevoli su', 'cosa dice la Cassazione…
penalista-esecuzione
Workflow completo per il diritto penitenziario e l'esecuzione penale italiana. ATTIVARE SEMPRE quando l'avvocato si occupa di: misure alternative alla detenzione (affidamento in prova, detenzione domiciliare, semiliberta), liberazione anticipata, liberazione condizionale, permessi premio, Tribunale di Sorveglianza…
penalista-scadenze
Calcolo preciso dei termini processuali penali italiani con ragionamento esplicito e aggiornamento dello scadenziario. ATTIVARE SEMPRE quando l'avvocato chiede di calcolare un termine, una scadenza, una data limite processuale, o dice: 'entro quando devo depositare', 'quando scade il termine per', 'ho ancora tempo…
penalista-archivio
Conversione di documenti (PDF, sentenze, atti, dottrina) in Markdown indicizzato per la Knowledge Base, e governo dell'INDICE della giurisprudenza. ATTIVARE quando l'avvocato dice: 'converti questo PDF', 'metti questa sentenza in memoria', 'aggiungi alla knowledge base', 'indicizza i massimari', 'trasforma in…