Back to skill

Security audit

Notes Knowledge Mapper

Security checks across malware telemetry and agentic risk

Overview

This skill is a local document knowledge-mapping helper whose storage and command behavior are mostly disclosed and proportionate to its purpose.

Install only if you are comfortable with documents you add being stored locally in the OpenClaw data directory until you remove that database or the tool provides a deletion path. Avoid adding highly sensitive notes on shared systems unless you have reviewed local file permissions and retention behavior.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Low
Confidence
93% confidence
Finding
The skill metadata emphasizes local-first/privacy expectations, but the user-facing description does not clearly warn that ingested documents are persisted to a SQLite database under the user's home directory. This can lead users to provide sensitive notes under the assumption of transient processing, creating an avoidable privacy and data-retention risk on shared or monitored systems.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.