Back to skill

Security audit

Qordinate - Durable lists, facts, and reminders for OpenClaw agents.

Security checks across malware telemetry and agentic risk

Overview

This is an instruction-only memory skill that openly uses Qordinate and chat platforms to store agent notes, tasks, facts, and reminders.

Install only if you are comfortable with selected agent memory being sent to Qordinate through WhatsApp, Telegram, or Slack. Define what the agent may save, and avoid secrets, credentials, regulated data, confidential client material, or anything that should not persist outside the local agent environment.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (2)

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The skill explicitly instructs agents to offload long-term facts, tasks, reminders, and configuration-like data to a third-party service over chat channels, but it does not require informed user consent or clearly disclose external transmission, retention, and processing. This creates a real privacy and data-governance risk because agents may forward sensitive user or business information outside the primary system boundary without adequate warning or controls.

Missing User Warnings

Medium
Confidence
96% confidence
Finding
The setup flow tells the user to connect Qordinate via phone/OTP and then have the agent send content through WhatsApp, Telegram, or Slack, but omits any warning that information will be transmitted to and stored by external providers. In context, this is more dangerous because the skill positions Qordinate as durable memory and a source of truth, increasing the likelihood of persistent storage of sensitive personal, operational, or client data.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.