Claude security directory

Meko

Published by YugabyteDB

High risk

Meko is a data-persistence cloud platform for hybrid teams (AI agents and humans). It gives you a place to keep shared context (agent memory, conversations, and knowledge base docs) without the need for you to stitch it together yourself. We have already done this behind the scenes, so everything just works out of the box with natural language. No knowledge of SQL required. Meko stores "context," which enables sharing across agents and harnesses. Meko stores and enables you to: Save AI conversations and extract facts from them into searchable memory, so work from an earlier session doesn't have to be reprocessed from all the individual pieces of data. Easily upload documents into a hosted knowledge base, so that you don't have to write complex data pre-processing pipelines. Allow resuming your context over time or switching between LLMs and IDEs, so you can pick up where you left off. This is helpful if you run out of tokens, an LLM goes down for a while, or you want to use a different AI provider. Share agent memory and knowledge base documents with other teammates (agents or humans) selectively, so everyone can work together and learn from each other. Store agent traces in a visual portal, so you can see what the agent thought or did during conversations or agentic work. Gain access through a remote MCP endpoint, so that any MCP-capable agent (Claude, Cursor, Codex, and other AI chat apps with MCP) can use it.

Security assessment

Plutonium assessed this web connector for permissions, capabilities, and security-relevant behavior.

  • Can permanently delete data: This connector can erase records, files, or accounts. Once deleted the data may be unrecoverable - even an accidental request can cause permanent loss.
  • Can change or update your information: This connector can edit, rename, overwrite, or otherwise modify records in the connected service. If a request gets manipulated, your data could be altered without you noticing.
  • Reads your private information: This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.
  • Sends your data to outside companies: Anything you share with this connector flows through one or more third-party services. Those companies see, store, and may use the data according to their own policies.

Available capabilities

This add-on exposes 23 tools or capabilities.

  • artifact_get
  • artifact_put
  • conversation_add_message
  • conversation_create
  • conversation_delete
  • conversation_get
  • conversation_list
  • conversation_update
  • datapack_create
  • datapack_delete
  • datapack_describe
  • datapack_list
  • datapack_update
  • knowledgebase_search
  • memory_add
  • memory_delete_all
  • memory_delete_by_id
  • memory_get_all
  • memory_get_by_id
  • memory_promote
  • memory_search
  • memory_update
  • track_token_usage

The interactive security report will load automatically.