Skip to content

Security: lamtuanvu/agentskills

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in this marketplace or any of its skills, please report it responsibly:

  1. Do not open a public issue
  2. Email the maintainer directly or use GitHub's private vulnerability reporting
  3. Include details about the vulnerability and steps to reproduce

Skill Security

For Users

When installing skills from this marketplace:

  • Review the skill's SKILL.md before installing
  • Check scripts/ for any executable code
  • Be cautious with skills that require elevated permissions
  • Report suspicious skills to maintainers

For Contributors

When contributing skills:

  • Do not include credentials or secrets
  • Avoid executing arbitrary code from user input
  • Document any required permissions clearly
  • Use environment variables for sensitive configuration

Supported Versions

Only the latest version of the marketplace is supported with security updates.

Version Supported
1.x

There aren't any published security advisories