memory-lancedb-pro-openclaw

Warn

Audited by Socket on Mar 21, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The overall capability matches a long-term memory plugin, and most credentials/data flows are proportionate to that purpose, but the recommended curl-to-bash installer from a different org than the skill publisher creates meaningful install-trust risk. Data flows to official model providers are plausible and not inherently malicious, yet auto-captured conversation memory may leave the local system when cloud providers are used.

Confidence: 81%Severity: 72%
Audit Metadata
Analyzed At
Mar 21, 2026, 03:54 AM
Package URL
pkg:socket/skills-sh/Aradotso%2Ftrending-skills%2Fmemory-lancedb-pro-openclaw%2F@049986fd9d00a24e58a58c8acce62ab8e8b2d0d4