Back to skill

Security audit

Memory Key

Security checks for vulnerabilities and agentic risk

Overview

This is a small Markdown-only helper that points users to a disclosed local memory folder and does not contain executable code or hidden data access.

Install this only if you want your agent to know and use the disclosed OpenClaw memory folder path. Review the separate memory-treasure skill before using the full memory workflow, and avoid placing secrets or untrusted instructions in the memory folder.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.