Contributing
Security
Security boundaries, safe path handling, and responsible disclosure for Pax.
Local-first threat model
Pax runs on your machine. Default builds exclude authentication, databases, and hosted inference. Sensitive paths are rejected in scene and scan workflows.
Safe paths
Scene asset paths must be relative. URI schemes and .. escapes are rejected. MCP tools use path guards before file operations.
Reporting
Report security issues through GitHub Security Advisories on pax-design/pax.
Related
Was this page helpful?
Answers are not recorded or transmitted. Pax has no telemetry.