triple-memory-2

Warn

Audited by Socket on Sep 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill's core purpose is coherent, but it expands trust through a third-party transitive skill install, forwards an API key into plugin code, and instructs silent autonomous persistence of user data. The main concern is not obvious malware, but disproportionate trust and undisclosed data retention across multiple backends.

Confidence: 85%Severity: 74%
Audit Metadata
Analyzed At
Sep 2, 2026, 05:39 AM
Package URL
pkg:socket/skills-sh/sundial-org%2Fawesome-openclaw-skills%2Ftriple-memory-2%2F@9195446b3af355d9f97509fac66baa0161d00e10fd1fba4f432758c6e260d1dc
Security Audit — socket — triple-memory-2