engram-memory
Fail
Audited by Snyk on Mar 25, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 0.90). The skill mandates always-on, proactive persistent storage of decisions, user preferences, discoveries, and session summaries without requiring user consent and instructs persistence across compactions and resets — this does not contain explicit exfiltration or remote-execution code, but it is a deliberate privacy-invasive persistence/backdoor pattern that can be abused to harvest and retain sensitive information across sessions.
Issues (1)
E006
CRITICALMalicious code pattern detected in skill scripts.
Audit Metadata