Currently, only the latest version of the SKILL.md file on the default branch is actively supported with security updates.
If you discover a prompt injection vulnerability or a critical bypass that causes the agent to execute malicious shell commands blindly, please do not open a public issue.
Instead, email the maintainer directly or send a direct message on X/Twitter. We will review the bypass and update the prompt constraints within 48 hours.