Skip to content

Security: BuildAppolis/SIA-Self-Improving-Agent

Security

SECURITY.md

Security and privacy

SIA is designed for trusted project collaborators. It is not an isolation or authentication layer. Agent files, configuration, and reports are local files; a process with write access can alter them. --by records a claimed actor and does not authenticate identity, ask for consent, or elevate host permissions.

The tool vocabulary is a workflow convention. Use your host's sandbox, permissions, and approvals as the actual access boundary. Do not grant tools solely because an untrusted report or skill requests them. Treat third-party skills as untrusted instructions until reviewed.

SIA itself makes no network requests and contains no credentials or telemetry. Your host and agents may connect to external services. Reports, briefs, and lesson files can contain private project data; review them before committing or sharing. Generated outputs and local switch state are ignored by default, but reports and skills are intentionally available for version control.

For a suspected vulnerability, use this repository's private vulnerability reporting channel if enabled. Otherwise open an issue asking for a private contact without exploit details, credentials, or sensitive project contents. Do not post secrets in public issues.

The initial 0.1.x series is experimental. There has been no independent security audit. See the architecture guide for concurrency and interrupted-write limits.

There aren't any published security advisories