โ† Back to Scanner

memory-lancedb-pro Security Audit Report

๐Ÿ”ญ Continuously monitored by ClawSecure Watchtower
Source:
SHA-256:

memory-lancedb-pro is an AI agent skill, created by win4r and published at CortexReach/memory-lancedb-pro. ClawSecure audited memory-lancedb-pro across 76 files through the 3-Layer Audit Protocol covering all ten OWASP ASI Top 10 categories, assigning a security score of 0/100 (Critical). The 31 findings concentrate in ReDoS, Malicious Code and Code Injection, including Attempts to access sensitive file: MEMORY.md and Attempts to access sensitive file: MEMORY.md. 18 were rated high or critical severity.

Is memory-lancedb-pro safe?

ClawSecure audited memory-lancedb-pro and assigned a security score of 0/100 (Critical), identifying 31 findings across ReDoS and Malicious Code. Review the findings below before installing.

What did ClawSecure find in memory-lancedb-pro?

ClawSecure identified 31 findings in memory-lancedb-pro, concentrated in ReDoS, Malicious Code and Code Injection. 18 were rated high or critical severity. The most severe include Attempts to access sensitive file: MEMORY.md and Attempts to access sensitive file: MEMORY.md.

How was memory-lancedb-pro audited?

ClawSecure ran memory-lancedb-pro through its 3-Layer Audit Protocol with full OWASP ASI Top 10 coverage, scanning 76 files from CortexReach/memory-lancedb-pro.

What does a score of 0 mean?

ClawSecure assigned memory-lancedb-pro a security score of 0/100, placing it in the Critical range. This is driven by 31 findings led by ReDoS that should be addressed before use. ClawSecure derives this score with a weighted deduction model (critical -20, high -10, medium -5, low -2 from a base of 100).

Audit Findings for memory-lancedb-pro

ClawSecure detected 31 security findings in memory-lancedb-pro, spanning ReDoS, Malicious Code, Code Injection and Permissions Manifest.

Showing the 12 highest-severity of 31 findings. The full interactive list appears below.

3-Layer Audit Protocol

Security Recommendations for memory-lancedb-pro

Fix ReDoS-prone patterns
memory-lancedb-pro contains regular expressions vulnerable to catastrophic backtracking (ReDoS). Replace vulnerable patterns, bound input length, and prefer linear-time matching so a crafted input cannot hang the agent.
Audit external network connections
memory-lancedb-pro connects to external endpoints. Verify every outbound connection goes to a trusted destination. Unauthorized callbacks are a primary indicator of ClawHavoc malware and data exfiltration. ClawSecure's proprietary engine monitors for known malicious endpoints including C2 infrastructure.
Eliminate dynamic code execution
memory-lancedb-pro evaluates code at runtime (for example eval or dynamic exec). Remove dynamic evaluation of untrusted input, and where code generation is unavoidable, sandbox it and validate every input.

Related Security Research

Why Generic Scanners Fail at AI Agent Securityโ†’Understanding Our 3-Layer Audit Protocolโ†’

Related AI Agent Security Audits

memory-lancedb-proScore 0/100memory-lancedb-proScore 0/100memory-lancedb-proScore 0/100memory-lancedb-proScore 0/100memory-lancedb-proScore 0/100

Scanned on September 17, 2026. memory-lancedb-pro is one of thousands of agents audited by ClawSecure from the community-curated awesome-openclaw-skills list and the openclaw/skills repository.

Start Your Free Scan