T02 · Agent Memory Poisoning
- Location
SKILL.md:16- Finding
Untrusted conversation content can poison persistent agent instructions
- Content
View full analysis
= 3` ``` `SKILL.md:448`: ```markdown 7. **Promote aggressively** - if in doubt, add to CLAUDE.md or .github/copilot-instructions.md ``` `hooks/openclaw/handler.js:14-23`: ```javascript - User corrects you → \`.learnings/LEARNINGS.md\` - Command/operation fails → \`.learnings/ERRORS.md\` - User wants missing capability → \`.learnings/FEATURE_REQUESTS.md\` - You discover your knowledge was wrong → \`.learnings/LEARNINGS.md\` - You find a better approach → \`.learnings/LEARNINGS.md\` **Promote when pattern ...[truncated 2490 chars]- Remediation
View remediation
