Skip to content

Security: Sugra-Systems/sugra-api-plugins

Security

SECURITY.md

Security

This repository ships plugin packages that hold Agent Skills (Markdown instructions) only. It does not ship hooks, an MCP configuration, MCP server code, or install-time scripts. The scripts in scripts/ build and check the packages; no plugin runs them.

Report a vulnerability in these files to support@sugra.systems and abuse@sugra.systems. Do not open a public issue with exploit detail.

Do not put API keys in a plugin file, commit, or chat. Issue keys at https://app.sugra.ai/developer/keys.

There aren't any published security advisories