Nm Memory Palace Review Chamber

Security checks across malware telemetry and agentic risk

Overview

This is an instruction-only PR review memory skill that openly stores selected review knowledge for later reuse.

Install only if you want PR review findings and decisions retained beyond the current session. Confirm where the memory palace stores entries, who can read them, whether automatic capture is enabled, and that any GitHub token or OAuth grant is limited to the repositories and PR actions needed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Low
Confidence
81% confidence
Finding
This markdown file includes a CLI example that writes output to `docs/review-decisions.md`, which is a file-affecting operation. The surrounding documentation does not warn that running the command will create or overwrite a file, so users are not explicitly alerted to the data/system impact.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal