Oathe Security Badge

Is ivangdavila/self-improving safe?

Yes. ivangdavila/self-improving is safe to install. Oathe's behavioral security audit gave the self-improving skill by ivangdavila a trust score of 87/100 with 4 findings, none critical or high. Report updated

https://clawhub.ai/ivangdavila/self-improving

87
SAFE

Is ivangdavila/self-improving safe to install?

This self-improving agent skill creates a persistent memory system to learn from user corrections and self-reflections. While it stores user data persistently and influences agent behavior, it includes good security boundaries and transparency features. The skill contains no executable code and shows normal installation behavior.

What security issues were found in ivangdavila/self-improving?

Category Scores

Prompt Injection 85/100 · 30%
Data Exfiltration 80/100 · 25%
Code Execution 95/100 · 20%
Clone Behavior 90/100 · 10%
Canary Integrity 100/100 · 10%
Behavioral Reasoning 75/100 · 5%

Findings (4)

MEDIUM Persistent User Data Storage -15

The skill stores user corrections and preferences persistently in ~/self-improving/, which could accumulate sensitive information over time if users inadvertently include it in corrections.

LOW Agent Behavior Modification -10

The skill defines patterns and rules that influence how the agent behaves, including automatic triggers for logging corrections and self-reflection patterns.

LOW Cross-Session Memory Persistence -20

The tiered memory system persists across sessions and automatically promotes/demotes patterns, potentially creating long-term behavioral changes in the agent.

INFO Security Boundaries Implemented 0

The skill includes comprehensive security boundaries that explicitly prohibit storing credentials, financial data, medical information, and other sensitive data.

Should I install ivangdavila/self-improving?

Oathe's verdict for ivangdavila/self-improving is SAFE with a trust score of 87/100. Recommendation: Install.