Beta — for evaluation and testing only. AIGuard is a guardrail, not a security boundary. Read the risk disclosures

Security

Policy summary. The full statement lives on the Security & trust page and in the repository's SECURITY.md.

Scope

AIGuard is an Execution-Layer Security tool — a guardrail, not a sandbox. Its threat model is the honest-but-fallible assistant: friction, authentication, and an audit trail around dangerous shell commands. It does not defend against a deliberately adversarial agent, and it does not gate file writes or network access performed without spawning a command.

Guarantees, briefly

Reporting a vulnerability

Private reports only

Report security issues via a GitHub Security Advisory, not a public issue. While the repository is private, contact the maintainer directly. Include the affected version, platform, assistant and its version, reproduction steps, and whether the issue bypasses policy evaluation or approval.

Supported versions

VersionSupported
6.1.0bx (Beta)Latest pre-release only
< 6.1No

Full threat model & known limitations