Pocketclaw
Security checks across malware telemetry and agentic risk
Overview
The skill's code and runtime instructions match its stated purpose: it stores and retrieves household items in JSON files within the agent workspace and updates MEMORY.md; it does not request extra credentials or network access.
This skill appears coherent: it stores household data in JSON files and synchronizes a MEMORY.md table using the included Python script. Before installing, back up your agent workspace (MEMORY.md and any existing wallet/grocery/arrangements files). Note the skill will modify files in the workspace (create/update wallet.json, grocery-history.json, arrangements.json and edit MEMORY.md) and can be invoked autonomously by the agent when triggered by chat messages—if you do not want automatic writes, disable autonomous invocation or require user confirmation before writes. No network calls or credentials were found in the provided files, but if the skill is updated later, re-check for any added external endpoints or credential requirements.
SkillSpector
SkillSpector findings are pending for this release.
VirusTotal
VirusTotal findings are pending for this skill version.
