Back to skill

Security audit

Memory Manager

Security checks across malware telemetry and agentic risk

Overview

This is a local memory-file organizer with some mutating commands, but its behavior is disclosed, purpose-aligned, and shows no evidence of hidden network access, credential use, or malicious actions.

Install this if you want local workspace memory organization. Before running organize.sh or categorize.sh, back up important memory files and review destination folders, because these commands can move, copy, append, or overwrite local markdown files. Treat snapshots and legacy folders as potentially sensitive because they may duplicate agent memory content.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Tp4

High
Category
MCP Tool Poisoning
Confidence
90% confidence
Finding
The skill markets capabilities such as auto-snapshots and semantic search, but the documented behavior is materially different: snapshots are manual, search appears to be plain-text, and the tool also performs file migration and reorganization. This mismatch can cause operators to overtrust the tool, invoke commands on important memory data under false assumptions, and suffer unintended data movement or loss of expected protections.

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The README instructs users to run a migration tool that moves existing memory files into a new structure, but it does not warn that this modifies user data or recommend creating a backup first. For a memory-management skill, those files may contain important agent context, so undocumented destructive or reorganizing operations increase the risk of accidental data loss, corruption, or unexpected behavior.

Missing User Warnings

Medium
Confidence
82% confidence
Finding
The main usage flow encourages users to run snapshot and organization commands that modify memory files, but it does not place clear safety warnings directly beside those steps. In a memory-management skill, users are especially likely to run these commands on important context stores, so insufficient warning increases the chance of accidental data migration, overwrite, or misplaced trust in reversibility.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.