Do not report suspected vulnerabilities in a public issue.
Send a concise private report to security@agenticassets.ai with the affected version or commit, reproduction steps, and potential impact. Do not include credentials, tokens, client data, or other sensitive material.
This repository contains a connector manifest and skill instructions only. Corbis service, OAuth, and authorization vulnerabilities belong to the production service owner and are handled through this private intake.