Skip to content

docs: add Task MCP security reporting policy - #3

Merged
ehe9991 merged 1 commit into
mainfrom
codex/task-mcp-security
Sep 11, 2026
Merged

docs: add Task MCP security reporting policy#3
ehe9991 merged 1 commit into
mainfrom
codex/task-mcp-security

Conversation

@ehe9991

@ehe9991 ehe9991 commented Sep 9, 2026

Copy link
Copy Markdown
Contributor

Problem

Unlike Search MCP, Task MCP has no discoverable security-reporting policy. Reports could expose credentials or private research/enrichment data in public issues.

Solution

Add a standalone SECURITY.md using the existing Parallel support contact. Distinguish this repository's proxy from the hosted service, request private reports with non-sensitive reproduction data, and make authentication and billable task creation explicit.

No new response-time commitments, license changes, runtime changes, or dependency updates. This PR adds one file and is independent of the README refresh.

Testing

  • Markdown lint passed.
  • Verified the Customer Terms and Privacy Policy links.
  • Cross-checked the support address against Search MCP's policy and the tool/authentication description against the official Task MCP documentation.
  • Verified this branch only adds SECURITY.md and leaves all existing files unchanged.
  • ⚠️ No vulnerability report was sent and no hosted tasks were executed.

@ehe9991
ehe9991 requested a review from a team September 9, 2026 17:40
@ehe9991
ehe9991 merged commit bc0daf6 into main Sep 11, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants