Overkill Memory System

SuspiciousAudited by ClawScan on May 10, 2026.

Overview

This is a powerful persistent memory skill, but it includes broad background automation, cloud/shared memory flows, and transcript analysis that should be reviewed before installation.

Review this carefully before installing. It appears purpose-aligned for an advanced memory system, but you should disable cron jobs, cloud backup, shared ChromaDB, platform posting, and transcript analysis until you have verified what data is stored, where it is sent, and how to review or delete it.

Findings (5)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

Incorrect, stale, or sensitive memories could influence future agent behavior across sessions.

Why it was flagged

The skill is designed to store and reuse context across sessions, but the provided artifacts do not clearly define review, deletion, retention, or per-task consent controls for what becomes future context.

Skill content
It provides persistent, contextual memory across agent sessions with automatic importance weighting, emotional tagging, and value-based retention.
Recommendation

Use only if you want persistent agent memory; configure clear memory review, deletion, retention, and opt-in rules before enabling broad automated storage.

What this means

Private notes, preferences, project details, or conversation-derived memories may be shared with other agents or synced to a cloud provider.

Why it was flagged

The skill discloses shared multi-agent memory and daily cloud backup, but the artifacts do not clearly bound what data is shared, who can read it, how consent works, or how sensitive memories are excluded.

Skill content
Multi-Agent Support: Shared + private ChromaDB areas per agent ... Cloud Backup: Supermemory integration for cross-device backup ... background sync only (daily backup).
Recommendation

Keep cloud backup and shared memory disabled until you have reviewed the exact data paths, access controls, exclusions, and provider settings.

ConcernHigh Confidence
ASI10: Rogue Agents
What this means

The agent could continue performing memory maintenance or posting-related workflows after the immediate task, potentially affecting public or shared spaces.

Why it was flagged

The skill advertises scheduled background activity and public/platform-facing actions, but the artifacts do not show clear per-action approval, rollback, or containment boundaries.

Skill content
Full Automation: Cron jobs for cross-session messages, platform posts, diary entries, and proactive memory maintenance
Recommendation

Do not enable cron jobs, cross-session messaging, or platform posting unless each action is explicitly reviewed and approved by the user.

What this means

If configured carelessly, conversation content could be sent to an unintended model CLI or command.

Why it was flagged

Using CLI-accessible model commands is purpose-aligned for error analysis, but it is a broad local tool surface and may pass transcript-derived prompts to whichever command is configured.

Skill content
Set ACC_MODELS to use any CLI-accessible model ... Each command is invoked with the prompt appended as the final argument.
Recommendation

Only set ACC_MODELS to trusted local or provider CLIs, and avoid enabling transcript analysis until you understand where prompts are sent.

What this means

Users have less registry-level visibility into what needs to run and where the code came from.

Why it was flagged

The package has runnable Python/shell files and manual setup instructions, but the registry metadata does not declare an install mechanism, required binaries, or a source/homepage for provenance.

Skill content
Source: unknown; Homepage: none; No install spec — this is an instruction-only skill; Code file presence 31 code file(s)
Recommendation

Inspect the included scripts before running them, verify the publisher/source, and avoid enabling optional install or cron steps until reviewed.