Back to skill

Security audit

Agent Memory OS

Security checks for vulnerabilities and agentic risk

Overview

This is a text-only skill for organizing AI agent memory, with persistent-memory behavior clearly tied to its purpose and bounded by privacy, routing, validation, and maintenance guidance.

Install this if you want structured guidance for agent memory. Before using it broadly, decide what information is allowed to become global or canonical memory, avoid storing secrets or personal identifiers, and periodically review promoted rules so stale or project-specific details do not affect future work.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.