Contributing

Security

Security boundaries, safe path handling, and responsible disclosure for Pax.

1 min readUpdated

Local-first threat model

Pax runs on your machine. Default builds exclude authentication, databases, and hosted inference. Sensitive paths are rejected in scene and scan workflows.

Safe paths

Scene asset paths must be relative. URI schemes and .. escapes are rejected. MCP tools use path guards before file operations.

Reporting

Report security issues through GitHub Security Advisories on pax-design/pax.

Was this page helpful?

Answers are not recorded or transmitted. Pax has no telemetry.