Skip to content

Security: boshu2/agentops

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability, please report it by emailing fullerbt@users.noreply.github.com.

Do not open a public issue for security vulnerabilities.

Scope

This repository contains Claude Code plugins (prompts, skills, agents). These are text-based configuration files that instruct Claude how to behave.

In scope:

  • Prompt injection vulnerabilities in skill/agent definitions
  • Unsafe bash commands in scripts
  • Credential exposure in examples

Out of scope:

  • Claude Code CLI vulnerabilities (report to Anthropic)
  • General Claude model behavior (report to Anthropic)

Response

We aim to acknowledge reports within 48 hours and provide a fix timeline within 7 days.

There aren’t any published security advisories