Scan Report
This report was generated in Chinese. Some content may be in Chinese.
5 /100
human-like-memory
Long-term memory for conversations: recall past discussions, save important info, search memories
合法的长期记忆技能,代码结构清晰,功能与文档完全一致,仅将对话数据发送到声明的远程API服务进行记忆存储和检索
Safe to install
可安全使用。建议验证 plugin.human-like.me 服务提供商的可靠性
Findings 2 items
| Severity | Finding | Location |
|---|---|---|
| Info | 配置文件读取 Sensitive Access | scripts/memory.mjs:24 |
| Info | 外部服务依赖 Supply Chain | scripts/memory.mjs:152 |
| Resource | Declared | Inferred | Status | Evidence |
|---|---|---|---|---|
| Network | READ | READ | ✓ Aligned | scripts/memory.mjs:180-200 |
| Filesystem | NONE | READ | ✓ Aligned | scripts/memory.mjs:24-26 读取配置和密钥文件 |
| Environment | READ | READ | ✓ Aligned | scripts/memory.mjs:41-45 |
| Shell | NONE | NONE | — | 无shell执行 |
4 findings
Medium External URL 外部 URL
https://gitlab.ttyuyin.com/personalization_group/human-like-mem-openclaw-skill.git README.md:23 Medium External URL 外部 URL
https://plugin.human-like.me README.md:33 Medium External URL 外部 URL
https://www.npmjs.com/package/human-like-mem-openclaw-plugin README.md:151 Medium External URL 外部 URL
https://clawhub.dev/skills/human-like-memory scripts/memory.mjs:152 File Tree
7 files · 48.0 KB · 1722 lines JavaScript 2f · 984L
Markdown 3f · 464L
Shell 1f · 174L
JSON 1f · 100L
├─
▾
scripts
│ ├─
memory.mjs
JavaScript
│ └─
setup.sh
Shell
├─
▾
test
│ └─
test-memory.mjs
JavaScript
├─
README_EN.md
Markdown
├─
README.md
Markdown
├─
skill.json
JSON
└─
SKILL.md
Markdown
Security Positives
✓ 代码结构清晰,无混淆或隐藏逻辑
✓ 功能实现与 SKILL.md 文档描述完全一致
✓ 无恶意代码模式:无base64解码、无eval、无反向shell、无凭证外泄
✓ 配置文件和凭证读取仅用于API认证,用途合理
✓ Upgrade通知机制是合法的版本检查功能
✓ 包含完整的测试套件,代码质量良好
✓ 无远程脚本执行或动态代码下载