deep-agents-memory

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill's footprint aligns with its stated purpose of memory and filesystem backends, including routing between ephemeral and persistent storage. It provides reasonable safeguards (virtual mode, explicit routing prefixes, and boundaries). However, there are notable security considerations: potential data leakage across threads, reliance on external stores for persistence, and the need for strict path-prefix matching to avoid misrouting of writes. The use of production-grade stores (e.g., PostgresStore) implies credential handling at deployment time, which should be managed securely outside the skill. Overall, the design is coherent and proportional to its purpose, but it warrants tightened controls around path routing, storage boundaries, and secure configuration of external stores to minimize data exposure and misrouting risks.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 01:45 PM
Package URL
pkg:socket/skills-sh/langchain-ai%2Fskills-benchmarks%2Fdeep-agents-memory%2F@a0dc9fd8801a7ea74204724dddb5f432974049e2