Skip to content

Security: SialkiLabs/Suno-Studio-Engineer

SECURITY.md

Security Policy

Supported Versions

Version Supported
Latest on master ✅
Older commits ❌

Reporting a Vulnerability

Do not open a public GitHub issue for security vulnerabilities.

If you discover a security issue in this repository (e.g., prompt-injection vectors that could exfiltrate user data when the skill/prompt library is consumed by an agent, or credential leakage in examples), please report it privately:

  • Email: open a private vulnerability report via GitHub's "Report a vulnerability" button on this repository, or contact the maintainers through the Sialki Labs profile.
  • Response time: we aim to acknowledge reports within 48 hours and provide a remediation plan within 7 days.

Scope

This repository contains prompt-engineering documentation and agent skills — no server components and no credential handling. Security findings in scope include:

  • Instructions that could lead consuming agents to unsafe actions (data exfiltration, secret disclosure, destructive operations)
  • Malicious or misleading content in templates
  • License/attribution violations

Security Commitment

Sialki Labs builds privacy-first, local-first systems. All published material is reviewed for injection-safe wording and is never bundled with credentials or telemetry.


© 2025 Sialki Labs. See LICENSE.

There aren't any published security advisories