Email security@agenttrail.sh. Keep vulnerability details out of GitHub issues, pull requests, and discussions until a fix is released.
A useful report includes the rule id, the package version, the command or path involved, and what goes wrong, with secrets and private project details removed. Please confirm the problem still occurs on the latest npm release. We welcome coordinated disclosure and will work with you on timing.
- A shipped rule whose pattern can be made to backtrack. The guard fails open under a time limit, so a slow pattern lets the command through rather than merely running slowly.
- A problem with the published
@agenttrail/guardrailspackage itself.
Problems in the tool that enforces these rules belong to AgentTrail Guard's security policy.
- A dangerous command that no rule matches. That is a rule gap, and the fix benefits from public review: open a Guardrails issue.
- The limits the README describes in What these rules deliberately do not catch.