Audit Report
thejoven/awesome-eliza
223af244192c · ran in 15.8s · bundle 4e895425
Overall score
1.6 /4
Partial
Risk class
UNKNOWN
Code passed
7 / 18
Attestation Yes
0
Outstanding ext.
1
CODE-CHECKED CLAUSES
- Strong7
- Adequate0
- Partial0
- Inadequate1
- Absent10
ATTESTATION QUESTIONS
- Yes0
- No0
- Not Applicable0
- Outstanding0
Harm
Don't hurt people
1.3/4
Inadequate
Truth
Don't deceive people
1.3/4
Inadequate
Responsibility
Don't abuse power
0.0/4
Absent
Order
Don't destabilize society
3.2/4
Adequate
⚠ 1 outstanding external confirmations — required for a complete Annex IV dossier. Complete now →
Safety
Don't harm people0.0/4Absent3 clauses▸
Safety
Don't harm peopleABSENTData protection impact assessment (DPIA) GDPR, Art 350/1 rules0/4
▸
0/4
Why we flagged it
Composite raw score 0.00 (0/1 rules matched). Supporting docs may exist outside the repo.
Suggested fix · we looked for these and found none
- presence_of_dpia
ABSENTAI risk assessment process ISO/IEC 42001, Art 6.10/2 rules0/4
▸
0/4
Why we flagged it
Composite raw score 0.00 (0/2 rules matched). Supporting docs may exist outside the repo.
Suggested fix · we looked for these and found none
- presence_of_risk_register
- risk_assessment_methodology_documented
ABSENTOperational planning and control ISO/IEC 42001, Art 8.10/2 rules0/4
▸
0/4
Why we flagged it
Composite raw score 0.00 (0/2 rules matched). Supporting docs may exist outside the repo.
Suggested fix · we looked for these and found none
- presence_of_runbook
- presence_of_ci_workflows
Privacy
Respect boundaries2.7/4Adequate4 clauses▸
Privacy
Respect boundariesSTRONGUntargeted facial image scraping for face databases EU AI Act, Art 5(1)(e)0/1 rules4/4
▸
4/4
Why we flagged it
Composite raw score 0.00 (0/1 rules matched).
Suggested fix · we looked for these and found none
- detect_face_image_scraping
STRONGEmotion recognition in workplace and education EU AI Act, Art 5(1)(f)0/1 rules4/4
▸
4/4
Why we flagged it
Composite raw score 0.00 (0/1 rules matched).
Suggested fix · we looked for these and found none
- detect_emotion_recognition_in_workplace_education
EXTERNALReal-time remote biometric identification in public spaces EU AI Act, Art 5(1)(h)EXT▸
Why we flagged it
Deployment context (public space, real-time, law enforcement use, judicial authorisation) is operational, not knowable from code. Always external.
ABSENTData protection by design and by default GDPR, Art 250/2 rules0/4
▸
0/4
Why we flagged it
Composite raw score 0.00 (0/2 rules matched). Supporting docs may exist outside the repo.
Suggested fix · we looked for these and found none
- pseudonymisation_or_anonymisation
- default_minimal_data_collection
Transparency
Don't deceive people2.0/4Partial2 clauses▸
Transparency
Don't deceive peopleSTRONGSubliminal techniques distorting behaviour EU AI Act, Art 5(1)(a)0/1 rules4/4
▸
4/4
Why we flagged it
Composite raw score 0.00 (0/1 rules matched).
Suggested fix · we looked for these and found none
- detect_manipulative_prompt_patterns
ABSENTPrinciples relating to processing of personal data GDPR, Art 50/2 rules0/4
▸
0/4
Why we flagged it
Composite raw score 0.00 (0/2 rules matched). Supporting docs may exist outside the repo.
Suggested fix · we looked for these and found none
- presence_of_privacy_policy
- purpose_limitation_documented
Auditability
Actions must be traceable0.5/4Inadequate2 clauses▸
Auditability
Actions must be traceableABSENTRecords of processing activities GDPR, Art 300/1 rules0/4
▸
0/4
Why we flagged it
Composite raw score 0.00 (0/1 rules matched). Supporting docs may exist outside the repo.
Suggested fix · we looked for these and found none
- presence_of_processing_register
INADEQUATEDocumented information for the AI management system ISO/IEC 42001, Art 7.50/2 rules1/4
▸
1/4
Why we flagged it
Composite raw score 0.20 (0/2 rules matched). Supporting docs may exist outside the repo.
▸Evidence · 1 hit— click to view code
Suggested fix · we looked for these and found none
- presence_of_versioned_docs
- docs_changelog_present
Accountability
Don't abuse power0.0/4Absent3 clauses▸
Accountability
Don't abuse powerABSENTLeadership and commitment for AI management ISO/IEC 42001, Art 5.10/2 rules0/4
▸
0/4
Why we flagged it
Composite raw score 0.00 (0/2 rules matched). Supporting docs may exist outside the repo.
Suggested fix · we looked for these and found none
- presence_of_ai_policy
- leadership_signoff_evidence
ABSENTRoles, responsibilities and authorities ISO/IEC 42001, Art 5.30/1 rules0/4
▸
0/4
Why we flagged it
Composite raw score 0.00 (0/1 rules matched). Supporting docs may exist outside the repo.
Suggested fix · we looked for these and found none
- presence_of_raci_or_owners
ABSENTInternal organization controls ISO/IEC 42001, Art A.50/1 rules0/4
▸
0/4
Why we flagged it
Composite raw score 0.00 (0/1 rules matched). Supporting docs may exist outside the repo.
Suggested fix · we looked for these and found none
- presence_of_codeowners
Human Oversight
Humans stay in control—/4Pending—▸
Human Oversight
Humans stay in controlNo in-scope clauses for this principle.
Fairness
Treat people fairly4.0/4Strong4 clauses▸
Fairness
Treat people fairlySTRONGExploiting vulnerabilities (age, disability, socio-economic) EU AI Act, Art 5(1)(b)0/1 rules4/4
▸
4/4
Why we flagged it
Composite raw score 0.00 (0/1 rules matched).
Suggested fix · we looked for these and found none
- detect_protected_attribute_targeting
STRONGSocial scoring leading to detrimental treatment EU AI Act, Art 5(1)(c)0/1 rules4/4
▸
4/4
Why we flagged it
Composite raw score 0.00 (0/1 rules matched). Supporting docs may exist outside the repo.
Suggested fix · we looked for these and found none
- detect_scoring_with_persistent_user_state
STRONGPredictive policing solely from profiling EU AI Act, Art 5(1)(d)0/1 rules4/4
▸
4/4
Why we flagged it
Composite raw score 0.00 (0/1 rules matched).
Suggested fix · we looked for these and found none
- detect_crime_risk_scoring_from_profile
STRONGBiometric categorisation by protected attributes EU AI Act, Art 5(1)(g)0/1 rules4/4
▸
4/4
Why we flagged it
Composite raw score 0.00 (0/1 rules matched).
Suggested fix · we looked for these and found none
- detect_biometric_categorisation_by_protected_attrs
Security & Governance
Don't destabilize society0.0/4Absent1 clause▸
Security & Governance
Don't destabilize societyABSENTResources for AI systems ISO/IEC 42001, Art A.70/2 rules0/4
▸
0/4
Why we flagged it
Composite raw score 0.00 (0/2 rules matched). Supporting docs may exist outside the repo.
Suggested fix · we looked for these and found none
- presence_of_security_policy
- dependency_pinning