Skip to content

Security: xxzzzzy/deep-research-skill

Security

SECURITY.md

Security Policy

API keys

Never include an API key in an issue, pull request, report, screenshot, or committed file. The project reads OPENAI_API_KEY from the local environment and does not need to store it.

If a key is exposed, revoke it immediately through the provider account and create a replacement.

Private data

Do not place confidential, personal, or regulated data in research prompts. Generated reports may contain excerpts or links returned by external search systems and should be reviewed before publication.

Reporting a vulnerability

Please report security issues privately to the repository owner through the contact method listed on the owner's GitHub profile. Do not open a public issue containing credentials or a working exploit.

There aren't any published security advisories