T02 · Agent Memory Poisoning
- Location
scripts/learner.py:74- Finding
Untrusted User Content Can Poison Persistent Agent State
- Content
View full analysis
= THRESHOLD_ERROR: suggestions.append( f"⚠️ 错误「{err}」已出现 {info['count']} 次,建议增加预检/兜底步骤," f"并将经验回写本技能 SKILL.md(lastNote: {info.get('lastNote','')})" ) if data["totalOps"] >= THRESHOLD_OPS: caps = data["capabilityStats"] top = max(caps.items(), key=lambda kv: kv[1]["count"]) if caps else None if top: suggestions.append(f"📈 最常用能力:「{top[0]}」({top[1]['count']} 次),优先打磨其示例与输出质量") low = [k for ...[truncated 3098 chars]- Remediation
View remediation
