Skip to content

Security: Trusgent/AgentID

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
0.1.x Yes

Reporting a Vulnerability

Please report security issues privately by opening a GitHub Security Advisory on this repository, or by contacting the maintainers through GitHub.

Do not disclose critical vulnerabilities in public issues before a fix is available.

Scope

  • Private key handling in the reference implementation
  • DID document validation and resolution
  • Signature verification logic

Out of Scope (v0.1)

  • Production HSM integration
  • Network-based DID resolution
  • Third-party issuer trust policies

There aren't any published security advisories