memory-lancedb-pro-openclaw
Warn
Audited by Socket on Sep 12, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill’s capabilities fit a memory plugin, and provider/config requirements are proportionate. The main risk is install trust: it recommends executing a mutable same-org raw GitHub setup script and beta/unpinned installs, which can modify config and restart services; this is medium supply-chain risk but not clear malware or credential-harvesting behavior.
Confidence: 88%Severity: 58%
Audit Metadata