Conker holds someone's conversations and memories, and can act for them. Security reports are the most useful contribution there is.
Please don't open a public issue. Report privately through GitHub: Security → Report a vulnerability on the affected repository (conker, pi, toolgate, memorygate, systemgate, embeddings).
Include what an attacker can do, the steps to reproduce, and the version or commit. Conker is maintained by one person, so reply times vary, and there is no bounty.
The boundaries Conker promises, so anything that breaks them is in scope:
- An action reaching the outside world without going through ToolGate.
- An approval that can be used twice, used for different arguments, or forged.
- The browser reaching a service other than the Gateway, or receiving a service key.
- History being rewritten, or forgotten content surviving where it shouldn't.
- A health check reporting
okwhile a dependency is down. - Secrets appearing in logs, responses or backups.
Only the latest release of each service is supported. Conker is early software: run it on a private network (for example Tailscale), never directly on the internet.