install-openviking-memory
Fail
Audited by Socket on Mar 4, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
The design aligns with its stated purpose: integrating OpenViking as a memory backend with explicit prompts for necessary credentials and local configuration. However, credentials handling, local persistence, and Cloud API interactions introduce notable security and privacy considerations. Recommend implementing secure key handling (e.g., vault or OS keyring), encrypting local memory configuration at rest, pinning dependency versions, and providing explicit disclosures about memory retention and data flows. Validate that Ark API keys have least-privilege scopes and consider opt-in/opt-out controls for memory persistence.
Confidence: 95%Severity: 90%
Audit Metadata