Mortgage ComplianceSAFE
A single hub to find Claude Skills, Agents, Commands, Hooks, Plugins, and Marketplace collections to extend Claude Code, Claude Desktop, Agent SDK and OpenClaw
Overview
A single hub to find Claude Skills, Agents, Commands, Hooks, Plugins, and Marketplace collections to extend Claude Code, Claude Desktop, Agent SDK and OpenClaw
80a0afd96301OBSERVED · 2026-10-07What it tells the agent
The instruction file, verbatim from the audited commit — this is the text the model reads, and the surface the audit's instruction layer examines. Quoted here so you can judge it without cloning anything.
--- name: mortgage-compliance category: business-finance description: Enforces mortgage regulatory compliance — TRID, RESPA, TILA, ECOA/Fair Lending, state licensing, required disclosures, and data privacy rules for all borrower interactions. --- # Mortgage Compliance Strict mortgage regulatory compliance layer that ensures every response touching lending, rates, fees, qualifications, or loan terms complies with federal and state regulations. ## When to Use This Skill - Presenting any rate quote or fee estimate to a borrower - Answering questions about qualification, approval, or loan terms - Handling borrower data and privacy concerns - Verifying state licensing before quoting ## What This Skill Does 1. Enforces TRID (Loan Estimate timing, tolerance thresholds, Closing Disclosure requirements) 2. Prevents RESPA Section 8 violations (kickbacks, referral fees, unearned fees) 3. Ensures TILA compliance (APR disclosure, right of rescission, advertising rules) 4. Enforces ECOA / Fair Lending (prohibits questions about protected classes) 5. Validates state licensing (10 licensed states with specific license numbers) 6. Manages required disclosures at initial contact and quote presentation 7. Protects borrower data privacy (PII handling, SSN/DOB prohibition in chat) ## Regulatory Frameworks - **TRID**: 12 CFR 1026.19(e), (f) - **RESPA**: 12 USC 2607 (Section 8) - **TILA / Regulation Z**: 12 CFR 1026 - **ECOA / Regulation B**: 12 CFR 1002 - **Fair Housing Act**: 42 USC 3601-3619 - **GLBA / Regulation P**: 12 CFR 1016 ## Installation This skill is part of the mortgage plugin. Install via: ``` /plugin marketplace add lendtrain/mortgage /plugin install mortgage@mortgage ``` Full source: [github.com/lendtrain/mortgage](https://github.com/lendtrain/mortgage)
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | NA |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (0)
No findings outside the package's declared scope.
Gates applied: no_behavioural_pass.
80a0afd96301full audit observations/trust-audit/skill/davepoon__mortgage-compliance.json · Report an issue / request a re-scanAudit history
Every audit this skill has had.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | 80a0afd96301 | SAFE | B | 89 | first audit |
Questions
What does the Mortgage Compliance skill do?
A single hub to find Claude Skills, Agents, Commands, Hooks, Plugins, and Marketplace collections to extend Claude Code, Claude Desktop, Agent SDK and OpenClaw
Is Mortgage Compliance safe to install?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean skill reads B.
What can Mortgage Compliance access on my machine?
The audit observed no filesystem, network or shell use at all in its source.
How current is this page?
The grade is for one exact copy of the source (80a0afd96301), read on 2026-10-07. The repository is watched, and a new audit runs when it changes — this is the first audit.