Agent Ledger is designed to keep usage data on the current Mac. Please report a vulnerability privately through GitHub Security Advisories rather than opening a public issue.
Security-sensitive reports include unintended network access, retention of prompt or code content, storage of raw local paths or identifiers, insecure database permissions, and parser behavior that reads credential files.
- No telemetry, login, or network upload module.
- Field-allowlist parsing for supported local logs.
- HMAC-SHA256 identifiers using a machine-local random salt.
- App data directory mode
0700; database, WAL, SHM, and salt mode0600. - Original Agent logs are never modified.