CyberAI is an offensive-security tool for authorized testing, research, and education only. Use it solely against systems you own or for which you have explicit, written authorization (signed engagement, in-scope bug-bounty program, or a lab you control). Unauthorized use is illegal and unsupported.
If you discover a security issue in CyberAI itself, please report it privately rather than opening a public issue:
- Use GitHub's Private vulnerability reporting (Security tab → Report a vulnerability), or
- Open a minimal issue asking for a private channel.
Please include affected version, reproduction steps, and impact. We aim to acknowledge reports within a few days.
The latest released version on PyPI receives fixes. Older versions are best-effort only.