v3.2.1 — Security Patch: Justification Scoring Hardened #9
Jovancoding
announced in
Announcements
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Security Fix
Addresses a vulnerability flagged by ClawHub scanner in
check_permission.pywhere simplistic keyword matching inscore_justification()could be bypassed via prompt injection to gain unauthorized access to sensitive resources.Changes
scripts/check_permission.py— Hardened justification scoringdetect_injection()with 16 prompt-injection attack patterns (ignore/override/bypass/sudo/jailbreak/etc.)test-security.ts— Fixed pre-existing audit integrity test failureTest Results
Install
Beta Was this translation helpful? Give feedback.
All reactions