Cortex
PassAudited by VirusTotal on May 11, 2026.
Findings (1)
This skill is classified as suspicious due to its use of high-risk capabilities, even though they are presented as part of the tool's legitimate functionality. The `scripts/setup.sh` file downloads and executes a binary from a remote GitHub repository, which introduces a supply chain risk. Furthermore, the `SKILL.md` instructions and `scripts/cortex-wrapper.sh` indicate the ability to install persistence mechanisms (e.g., `cortex connect schedule --install` for `launchd`/`systemd` jobs) and modify shell configuration files (`~/.zshrc`, `~/.bashrc`) to add the binary to the system's PATH. While these actions are described as necessary for a memory management tool that syncs data and runs in the background, they represent significant system access and persistence capabilities that could be abused if the `cortex` binary itself were compromised or malicious.
