Skip to content

Security: agentic-dev-io/mcp-b

Security

.github/SECURITY.md

Security Policy

Supported Versions

Version Supported
0.3.x
< 0.3

Reporting a Vulnerability

We take security vulnerabilities seriously. If you discover a security vulnerability in MCP-B, please follow these steps:

  1. Do not create a public GitHub issue for the vulnerability
  2. Email the maintainer directly at bjoern.bethge@gmail.com
  3. Include the following information:
    • Description of the vulnerability
    • Steps to reproduce
    • Potential impact
    • Any suggested fixes (optional)

Response Timeline

  • Initial Response: Within 48 hours
  • Assessment: Within 7 days
  • Fix Timeline: Depends on severity
    • Critical: Within 24 hours
    • High: Within 7 days
    • Medium: Within 30 days
    • Low: Next scheduled release

Security Best Practices

When using MCP-B:

  1. Keep dependencies up to date
  2. Use virtual environments
  3. Review code before executing dynamic content
  4. Follow the ETHIC principles for AI safety
  5. Validate all inputs in agent communication

Acknowledgments

We appreciate responsible disclosure of security vulnerabilities.

There aren’t any published security advisories