Back to skill

Security audit

mem-scan

Security checks for vulnerabilities and agentic risk

Overview

This skill is a disclosed memory-bank scanning workflow that reads scoped OpenClaw memory-bank directories and only changes documentation after user approval.

Install this if you want an agent workflow that reviews OpenClaw memory-bank task documentation across your workspace and project repos. Be aware it may read project planning history and recommend persistent documentation updates, so review the approval request before allowing changes.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.