Skip to content

Security: erwinmsmith/THETA-Agent

Security

SECURITY.md

Security Policy

Do not report exploitable vulnerabilities in public issues. Contact the repository owner privately through the security reporting channel provided on the GitHub repository.

Never commit credentials, private datasets, model secrets, or generated research artifacts. The agent must require explicit human approval before costly execution, destructive actions, process cancellation, or external data transfer. Tool permissions and audit records are security boundaries and must not be bypassed by presentation or language-model output.

There aren't any published security advisories