git-notes-memory

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The code fragment is a coherently documented integration guide for a silent, branch-aware memory system based on git notes. It aligns with its stated purpose, presents plausible command flows, and does not demonstrate direct data exfiltration or external network activity. However, the silent memory paradigm and persistent git-notes storage introduce privacy and governance risks if used in shared or insecure contexts. Treat as suspicious only if memory data becomes sensitive or if repository sharing expands beyond trusted boundaries; otherwise, it is benign in scope and purpose.

Confidence: 65%Severity: 50%
Audit Metadata
Analyzed At
Mar 18, 2026, 10:28 PM
Package URL
pkg:socket/skills-sh/sundial-org%2Fawesome-openclaw-skills%2Fgit-notes-memory%2F@d55d037e7de701bc5352c8e051cc7b4151823e0e
Security Audit — socket — git-notes-memory