Openclaw mneme vision

Security checks across malware telemetry and agentic risk

Overview

This skill is a coherent local media search helper, with privacy-sensitive local media handling that is disclosed and purpose-aligned.

Install this only if you are comfortable with a local MCP server indexing selected media folders and temporarily storing uploaded media for session use. Review the external mneme-mcp and OpenClaw plugin packages, and avoid indexing sensitive folders unless you explicitly want them searchable.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The markdown states that user-uploaded photos or videos should be saved locally as temporary session context, which affects user data handling and local storage. There is no accompanying warning or disclosure about this persistence, privacy implications, or how long the files remain stored.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal