Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
9 changes: 4 additions & 5 deletions CONTRIBUTING.md
Original file line number Diff line number Diff line change
Expand Up @@ -4,13 +4,12 @@

Open-core packages (this repo is **Vantio Optics**):

- `packages/vantio-cli` — CLI runner (`@vantio/cli`, currently **0.3.2**) — `npm install -g @vantio/cli`
- `packages/vantio-agent-sdk-py` — Python agent SDK (`vantio-agent-sdk`, currently **3.0.2**)
- `packages/vantio-agent-sdk` — Node.js agent SDK (`@vantio/agent-sdk`)
- `packages/vantio-cli` — CLI runner (`@vantio/cli`). Install the current release from npm: `npm install -g @vantio/cli`
- `packages/vantio-agent-sdk-py` — Python agent SDK (`vantio-agent-sdk`). Install the current release from PyPI: `pip install vantio-agent-sdk`
- `packages/vantio-agent-sdk` — Node.js agent SDK (`@vantio/agent-sdk`). Install the current release from npm.
- `packages/vantio-optics-mcp` — Optics MCP (`@vantio/optics-mcp`) — observe only
- `packages/vantio-gate-mcp` — Gate MCP (`@vantio/gate-mcp`) — dry-run evaluate only (legacy/compat; Gate is the internal Enforce function inside Phantom Engine, not a standalone SKU)

Phantom Engine (Linux host protection) lives in a separate repository. Do not add it here.
Phantom Engine (Linux host protection) lives outside this repository. Do not add it here. The product page is https://vantio.ai/phantom.

## Development

Expand Down
14 changes: 14 additions & 0 deletions SECURITY.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,14 @@
# Security Policy

This repository follows the Vantio organization security policy for public Optics surfaces.

Report a suspected vulnerability here:

- Email **security@vantio.ai** (preferred)
- Or open a **private** GitHub Security Advisory on this repository, if that is enabled

Do not open a public issue for an unfixed vulnerability. Do not attach secrets, customer data, or prompts and completions.

We acknowledge reports when we can. We do not promise a response time.

Phantom Engine source is private. Do not use this repository to disclose or contribute host-control issues. The product page is [vantio.ai/phantom](https://vantio.ai/phantom).
Loading