GhostMCP is currently a beta project. Security updates are provided for the latest main branch. Older commits, unmerged branches, locally modified copies, and prerelease artifacts may not receive fixes.
The current package version is 0.2.1. Review configuration and deployment changes before upgrading between beta revisions.
Do not open a public issue containing vulnerability details, exploit code, credentials, target information, or sensitive logs.
Preferred reporting method:
Include, when available:
- Affected commit or version
- Deployment mode and relevant configuration with secrets removed
- Reproduction steps
- Expected and observed behavior
- Security impact
- Suggested mitigation
- Whether the issue is already being exploited
If GitHub Security Advisories cannot be used, open a minimal public issue without technical exploit details and request a private communication channel.
Vulnerability reporting and secure operation are separate concerns. Operators should also review:
GhostMCP must only be used against systems the operator owns or is explicitly authorized to assess.
The security policy covers GhostMCP source code and repository-maintained deployment artifacts. It does not automatically cover:
- Third-party security binaries invoked by GhostMCP
- External plugins
- MCP clients
- Reverse proxies and identity providers
- Vault, AWS, or GCP services
- Locally modified containers or systemd units
Reports involving third-party components are still useful when GhostMCP's integration makes an issue exploitable or leaks sensitive information.