memory-management

Warn

Audited by Gen Agent Trust Hub on May 15, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructions recommend installing an external tool called MemKraft via pipx install memkraft. The provided source for this tool is a GitHub repository (github.com/seojoonkim/memkraft) belonging to an unvetted third-party user. Recommending the installation and execution of unverified external code increases the risk of supply chain attacks or execution of malicious software within the user's environment.
  • [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection. The recall operation builds queries using user-provided search terms and retrieves documents that may contain untrusted data from previous sessions. While the skill defines structured data formats, it lacks explicit boundary markers or sanitization instructions to prevent the agent from being influenced by instructions embedded within the retrieved memory documents.
Audit Metadata
Risk Level
MEDIUM
Analyzed
May 15, 2026, 06:17 PM
Security Audit — agent-trust-hub — memory-management