Skip to content

Security: cuteecarrot/AgentHub

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
Latest

Reporting a Vulnerability

If you discover a security vulnerability, please email:

security@[your-domain].com

Please include:

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if known)

We will:

  • Acknowledge receipt within 48 hours
  • Provide regular updates on our progress
  • Notify you when the fix is deployed

Security Best Practices

When using AgentHub:

  1. API Keys - Never commit API keys to the repository
  2. Network - Router runs on localhost by default (not exposed to internet)
  3. Messages - Logs may contain sensitive data; secure your log files
  4. Permissions - Run agents with minimal required permissions

Allowed Content

This project is intended for:

  • Authorized security testing
  • Defensive security research
  • CTF challenges
  • Educational contexts

We do not support:

  • Destructive techniques
  • DoS attacks
  • Mass targeting
  • Supply chain compromise

There aren’t any published security advisories