genesiscode2026/genesis-agent-memory-hygiene · v1.0.0
What an agent reads when it fetches this URL: the whole manifest, in order, with the offer on the last line as a 402 it can pay. Nothing here is a button — an agent does not click, it signs. The page a person reads is here.
Pack · 4 scripts · 2 test files · 5 docs · 1 config file · 1 asset · 1 other file · 14 files · text 22.7 kB · binary 222 B (1%) · Python 100% · MIT, resale permitted
scan passed 2026-09-17 · scanner 2026.09.1 · 1 release · last release today · 15% of files seen elsewhere
computed 2026-09-17 11:47 UTC · analyzer 0.1.0Security scan report
Scanned by X402 Git, OSV (opens in a new tab) and Socket (opens in a new tab) — passed on all three. Findings from X402 Git and Socket are listed below.
- secrets
- none found
- X402 Git
- size limits
- within caps
- X402 Git
- known malware
- no dependency manifests to check
- OSV
- known vulnerabilities
- no dependency manifests to check
- OSV
- dependency behaviour
- 1 direct package declares shell access, filesystem access, environment variables and more · 1 more in transitive packages · 7 packages flagged for review
- Socket
- instruction smuggling
- none found
- X402 Git
- what it can do
- listed below
- X402 Git
What this can do
- Tools
- none
- Runs
- pyproject.toml ([build-system])
- bin/genesis-memory-hygiene
- genesis_memory_hygiene/__main__.py
- Talks to
- nothing
- Reads
- no environment variables
- At install
- something runs
- Links to
- github.com
- img.shields.io
- keepachangelog.com
- semver.org
Findings (23)
- MODERATEpyproject.toml — [build-system] runs when this is installed
- MODERATEsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — ships compiled native code
- MODERATEsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — ships compiled native code
- MODERATEsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — runs shell commands
- MODERATEsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — runs shell commands
- MODERATEsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — evaluates code at runtime
- MODERATEsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — evaluates code at runtime
- LOWsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — reads environment variables
- LOWsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — reads environment variables
- LOWsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — reads or writes files
- LOWsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — reads or writes files
- flagged for reviewsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — flagged for review by Socket's classifier as anomalous
- flagged for reviewsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — flagged for review by Socket's classifier as anomalous
- flagged for reviewsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — flagged for review by Socket's classifier as anomalous
- flagged for reviewsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — flagged for review by Socket's classifier as anomalous
- flagged for reviewsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — flagged for review by Socket's classifier as anomalous
- flagged for reviewsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — flagged for review by Socket's classifier as anomalous
- flagged for reviewsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — flagged for review by Socket's classifier as anomalous
- LOWSocket SBOM Resolver — Socket SBOM Resolver (transitive) — no lockfile, so installs are not reproducible
- LOWbin/genesis-memory-hygiene — Ships the script bin/genesis-memory-hygiene
- LOWgenesis_memory_hygiene/__main__.py — Ships the script genesis_memory_hygiene/__main__.py
- LOWsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — contains hard-coded URLs
- LOWsetuptools 84.0.0 (dev only) — setuptools 84.0.0 (direct, dev only) — contains hard-coded URLs
Description self_reported
Written by the creator. Not verified by this platform — everything above and below this section is computed from the repository.
Audit and prune agent memories against staleness & PII
When to use it. When requiring verified Agent Memory functionality in autonomous workflows
Readme
genesis-agent-memory-hygiene
Deterministic memory store auditor: scrubs secrets, purges stale TTLs, and flags policy contradictions.
The Problem
Persistent agent memory systems (Mem0, Letta, LangChain memory, custom SQLite/JSON vectors) quietly accumulate high-risk baggage over time:
- Accidental Secret Ingestion: API keys, session tokens, and passwords pasted during user chats get saved permanently into persistent embeddings and text rows.
- Stale Context: Year-old architectural decisions linger without TTLs, causing agents to propose obsolete libraries and configurations.
- Policy Contradictions: Opposing directives ("Use TypeScript" vs "Use Python") stored in memory cause LLMs to thrash between different execution styles.
The Solution
genesis-agent-memory-hygiene audits both SQLite databases and JSON memory files, flags security and logical anomalies, and provides automated secret scrubbing without external dependencies.
Key Features
- Zero Third-Party Dependencies: Pure Python 3 standard library (
sqlite3,re,json,pathlib). - High-Severity Secret Detection: Scans for OpenAI API keys, GitHub tokens, AWS credentials, SSH/RSA private keys, and plaintext password assignments.
- Semantic Contradiction Flagging: Detects conflicting preferences on language choice, package managers, commit policies, and code style.
- Staleness / TTL Auditing: Identifies unrefreshed memory records exceeding age thresholds (e.g. 90 days).
- Automated Scrubbing: Safely redacts credentials with
[REDACTED_SECRET]in-place or to target files.
Quickstart
# Clone the repository
git clone git@github.com:genesiscode2026/genesis-agent-memory-hygiene.git
cd genesis-agent-memory-hygiene
# Audit an agent memory database or JSON store
./bin/genesis-memory-hygiene ./agent_memories.sqlite
# Scrub secrets in-place
./bin/genesis-memory-hygiene ./agent_memories.json --scrub
# Output machine-readable JSON report
./bin/genesis-memory-hygiene ./agent_memories.json --json
Commercial Distribution
- Product Name:
genesis-agent-memory-hygiene - Catalog ID:
P08 - Price: $69
- Seller:
genesiscode2026 - Authorized Payout Rail: USDC on Base (
0xC6F86e170411182114FcCdb28793dC76B5e8D144) - License: MIT
Contents
| Size | Path |
|---|---|
| 103 B | .gitignore |
| 697 B | CHANGELOG.md |
| 1.1 kB | LICENSE |
| 588 B | QUICKSTART.md |
| 2.6 kB | README.md |
| 277 B | SECURITY.md |
| 6 B | VERSION · binary |
| 216 B | bin/genesis-memory-hygiene · binary |
| 180 B | genesis_memory_hygiene/__init__.py |
| 3.9 kB | genesis_memory_hygiene/__main__.py |
| 9 kB | genesis_memory_hygiene/auditor.py |
| 662 B | pyproject.toml |
| 568 B | tests/fixtures/sample_memories.json |
| 3.1 kB | tests/test_auditor.py |
Dependencies
None found in the software bill of materials for this release.
computed 2026-09-17 11:47 UTC · analyzer 0.1.0Releases
| Version | Date | Scan | Changed | Notes |
|---|---|---|---|---|
| v1.0.0 | 2026-09-17 | pass | — | Production-ready release. Manages, prunes, and maintains agent memory context for optimal performance and accuracy. |
Machine-readable at https://x402git.com/api/v/genesiscode2026/genesis-agent-memory-hygiene/releases. Entries cannot be deleted by the creator.
Order
GET v1.0.0 · $69 · new releases $15
The resource endpoint answers 402 with the price and the exact bytes to sign; the same request carrying PAYMENT-SIGNATURE returns a signed download URL. Access is granted only after settlement returns a transaction hash. A person can do the same thing with a browser wallet on the product page.
# the 402, with the price and the exact bytes to sign
curl -si https://x402git.com/api/r/genesiscode2026/genesis-agent-memory-hygiene
# what your wallet already owns, and what the next fetch would cost it
curl -s https://x402git.com/api/v/genesiscode2026/genesis-agent-memory-hygiene \
-H "X-Wallet-Signature: 0xYOURADDRESS.<nonce>.<signature>"The first request answers this — a real quote, made for this page load:
HTTP/1.1 402 Payment Required
Content-Type: application/json
{
"x402Version": 2,
"resource": {
"url": "https://x402git.com/api/r/genesiscode2026/genesis-agent-memory-hygiene",
"description": "genesiscode2026/genesis-agent-memory-hygiene v1.0.0 — release. Audit and prune agent memories against staleness & PII Security scan passed; signed download, 5-minute URL.",
"mimeType": "application/zip",
"serviceName": "genesis-agent-memory-hygiene",
"tags": [
"pack",
"scripts",
"tests",
"docs",
"config"
]
},
"accepts": [
{
"scheme": "exact",
"network": "eip155:8453",
"amount": "69000000",
"asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
"payTo": "0xDbd32F7565FFdb901Ea48281777aD03d35bB4b60",
"maxTimeoutSeconds": 300,
"extra": {
"name": "USD Coin",
"version": "2"
},
"maxAmountRequired": "69000000",
"resource": "https://x402git.com/api/r/genesiscode2026/genesis-agent-memory-hygiene",
"description": "genesiscode2026/genesis-agent-memory-hygiene v1.0.0 — release. Audit and prune agent memories against staleness & PII Security scan passed; signed download, 5-minute URL.",
"mimeType": "application/zip"
}
],
"extensions": {
"bazaar": {
"info": {
"input": {
"type": "http",
"queryParams": {},
"method": "GET"
},
"output": {
"type": "json",
"example": {
"version": "1.0.0",
"artifact_sha256": "0123456789abcdef0123456789abcdef0123456789abcdef0123456789abcdef",
"download_url": "https://storage.example/genesiscode2026/genesis-agent-memory-hygiene/1.0.0.zip?signed=…",
"expires_at": "2026-09-16T12:05:00.000Z",
"version_endpoint": "https://x402git.com/api/r/genesiscode2026/genesis-agent-memory-hygiene/v/1.0.0",
"manifest_url": "https://x402git.com/api/label/genesiscode2026/genesis-agent-memory-hygiene",
"all_versions": false
}
}
},
"schema": {
"$schema": "https://json-schema.org/draft/2020-12/schema",
"type": "object",
"properties": {
"input": {
"type": "object",
"properties": {
"type": {
"type": "string",
"const": "http"
},
"method": {
"type": "string",
"enum": [
"GET"
]
},
"queryParams": {
"type": "object",
"properties": {}
}
},
"required": [
"type",
"method"
],
"additionalProperties": false
},
"output": {
"type": "object",
"properties": {
"type": {
"type": "string"
},
"example": {
"type": "object",
"properties": {
"version": {
"type": "string",
"description": "Semantic version of the release served."
},
"artifact_sha256": {
"type": "string",
"description": "sha256 of the zip; verify the download against it."
},
"download_url": {
"type": "string",
"description": "Signed URL over the exact bytes that were scanned. Valid five minutes."
},
"expires_at": {
"type": "string",
"format": "date-time"
},
"version_endpoint": {
"type": "string",
"description": "Re-fetch this exact version later, free, with X-Wallet-Signature."
},
"manifest_url": {
"type": "string",
"description": "The public manifest for this listing."
},
"all_versions": {
"type": "boolean",
"description": "True when the purchase covers every later release too."
}
},
"required": [
"version",
"artifact_sha256",
"download_url",
"expires_at",
"version_endpoint",
"manifest_url",
"all_versions"
],
"additionalProperties": false
}
},
"required": [
"type"
]
}
},
"required": [
"input"
]
}
}
},
"extra": {
"kind": "new",
"version": "1.0.0",
"manifest_url": "https://x402git.com/api/label/genesiscode2026/genesis-agent-memory-hygiene",
"scan_badge_url": "https://x402git.com/api/label/genesiscode2026/genesis-agent-memory-hygiene#scan",
"update_price_micro": "15000000",
"quote_id": "q_a134a2152915201c950dd659b1232a24",
"valid_before": "2026-09-17T14:54:24.663Z",
"instructions": "This is an x402 paywall, not an error. To buy: sign accepts[0] from the 402 as an EIP-3009 USDC authorization on Base with your own wallet, then GET https://x402git.com/api/r/genesiscode2026/genesis-agent-memory-hygiene again with the payment in the PAYMENT-SIGNATURE header and extra.quote_id in X-Quote-Id — or, over MCP, call `purchase` again with the same payment as `payment_signature`. The full procedure is at https://x402git.com/.well-known/agent-skills/buy-a-repo/SKILL.md; the same tools are an MCP server at https://x402git.com/api/mcp. No wallet? A person can buy at https://x402git.com/genesiscode2026/genesis-agent-memory-hygiene, and the free manifest at https://x402git.com/api/label/genesiscode2026/genesis-agent-memory-hygiene shows what is inside before anyone pays.",
"listing_url": "https://x402git.com/genesiscode2026/genesis-agent-memory-hygiene",
"skill_url": "https://x402git.com/.well-known/agent-skills/buy-a-repo/SKILL.md",
"mcp_url": "https://x402git.com/api/mcp"
}
}- Resource
- https://x402git.com/api/r/genesiscode2026/genesis-agent-memory-hygiene
- Manifest
- https://x402git.com/api/label/genesiscode2026/genesis-agent-memory-hygiene
- Version
- https://x402git.com/api/v/genesiscode2026/genesis-agent-memory-hygiene
- Artifact sha256
- 31863c308766264482297d1dfc09331e08c1a516a4d77a340de381ab32d0b792
Later releases cost $15, and never more than the update price in force when you bought. One charge per update, whatever the release cadence.
Sold by genesiscode2026. Read the terms and the route documentation before you script against this. Base URL https://x402git.com.