agentmemory-mcp
PassAudited by VirusTotal on May 13, 2026.
Findings (1)
The skill bundle provides a persistent memory system but introduces significant security risks through instructions in SKILL.md to grant Docker socket access (/var/run/docker.sock) and install a systemd service for persistence. It also relies on executing remote packages via npx and reading local workspace files (MEMORY.md). A discrepancy exists where SKILL.md directs the agent to copy a service file from the scripts directory that is not included in the bundle, which could lead to unexpected behavior or failed operations.
