Movatterモバイル変換


[0]ホーム

URL:


Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

[docs] add security documentation section#877

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to ourterms of service andprivacy statement. We’ll occasionally send you account related emails.

Already on GitHub?Sign in to your account

Draft
pcarleton wants to merge1 commit intomain
base:main
Choose a base branch
Loading
frompcarleton/security-user-guide

Conversation

pcarleton
Copy link
Contributor

Motivation and Context

WIP place to iterate on a security docs section

How Has This Been Tested?

Breaking Changes

Types of changes

  • Bug fix (non-breaking change which fixes an issue)
  • New feature (non-breaking change which adds functionality)
  • Breaking change (fix or feature that would cause existing functionality to change)
  • Documentation update

Checklist

  • I have read theMCP Documentation
  • My code follows the repository's style guidelines
  • New and existing tests pass locally
  • I have added appropriate error handling
  • I have added or updated documentation as needed

Additional context

and session hijacking.

We maintain an active [Vulnerability Disclosure Program](https://hackerone.com/anthropic-vdp) through HackerOne
for security researchers, and encourage reporting security issues through [GitHub's security disclosure process](https://github.com/modelcontextprotocol/specification/security)
Copy link
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others.Learn more.

TODO: either enable this or remove this line.

which includes detailed mitigation strategies for threats like confused deputy attacks, token passthrough vulnerabilities,
and session hijacking.

We maintain an active [Vulnerability Disclosure Program](https://hackerone.com/anthropic-vdp) through HackerOne
Copy link
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others.Learn more.

TODO: clarify what's in scope for the anthropic VDP ?

Sign up for freeto join this conversation on GitHub. Already have an account?Sign in to comment
Reviewers
No reviews
Assignees
No one assigned
Labels
None yet
Projects
None yet
Milestone
No milestone
Development

Successfully merging this pull request may close these issues.

1 participant
@pcarleton

[8]ページ先頭

©2009-2025 Movatter.jp