How we respond when things go wrong. Published for accountability and transparency.
Vulnerability reported or discovered during re-certification. Automated monitoring flags anomalies.
Assess severity, determine if exploit is active, classify the impact on certified skills.
Skill author notified with specifics of the vulnerability and remediation guidance.
Certification suspended. Badge turns red. Verification endpoint returns "suspended". No grace period for critical issues.
Author patches the vulnerability and resubmits the skill for evaluation.
Full re-evaluation including the new vulnerability pattern. No shortcuts.
New pattern added to evaluator. Public disclosure if appropriate. Lessons documented.
For vulnerability reports, security concerns, or incident notifications:
research@scientiaexmachina.coAdditional channels: Public status page · Blog announcements