Skip to content

Security: elmahio/elmah-io-ai-plugin

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you find a security vulnerability in this plugin — in the skills, the agent, the MCP wiring, or the plugin manifests — please report it privately rather than opening a public issue.

Email info@elmah.io with:

  • A description of the vulnerability and its potential impact
  • Steps to reproduce
  • Any relevant logs, requests, or proof-of-concept code

We'll acknowledge your report and work with you on a fix and disclosure timeline before any public details are shared.

Scope

This repo contains the plugin packaging (skills, agent, MCP client configuration) for connecting AI editors to the elmah.io MCP server. It does not contain the MCP server itself, elmah.io's APIs, or the elmah.io product. For vulnerabilities in those, also use info@elmah.io — the report will be routed appropriately.

Supported Versions

Only the latest version of this plugin is supported. Update to the latest release before reporting an issue to confirm it still applies.

There aren't any published security advisories