Skip to content

Security: Meterless/Meterless

Security

SECURITY.md

Security Policy

Reporting a vulnerability

Report security issues privately to sam@thedataplant.com. Do not open a public issue for security vulnerabilities.

Include:

  • The component affected (an engine spec, a doc, or a product)
  • Steps to reproduce
  • Impact assessment if known

We will acknowledge reports as quickly as possible and coordinate a fix and disclosure timeline with you.

Product vulnerabilities

The Gaia, Relay, and Swarms applications ship from their own repos. Report product vulnerabilities privately through the security advisory form on the matching repo (meterless/gaia, meterless/relay, meterless/swarms), or to the email above.

Scope notes

Meterless products execute locally and can automate desktop workflows. Reports involving privilege escalation, sandbox escape, prompt-injection-driven execution, or exfiltration of local context and memory are especially valuable.

There aren't any published security advisories