| Version | Supported |
|---|---|
Latest on master |
✅ |
| Older commits | ❌ |
Do not open a public GitHub issue for security vulnerabilities.
If you discover a security issue in this repository (e.g., prompt-injection vectors that could exfiltrate user data when the skill/prompt library is consumed by an agent, or credential leakage in examples), please report it privately:
- Email: open a private vulnerability report via GitHub's "Report a vulnerability" button on this repository, or contact the maintainers through the Sialki Labs profile.
- Response time: we aim to acknowledge reports within 48 hours and provide a remediation plan within 7 days.
This repository contains prompt-engineering documentation and agent skills — no server components and no credential handling. Security findings in scope include:
- Instructions that could lead consuming agents to unsafe actions (data exfiltration, secret disclosure, destructive operations)
- Malicious or misleading content in templates
- License/attribution violations
Sialki Labs builds privacy-first, local-first systems. All published material is reviewed for injection-safe wording and is never bundled with credentials or telemetry.
© 2025 Sialki Labs. See LICENSE.