599 B
599 B
Security Policy
WebSocket Security
The Nexus WebSocket gateway (server.py) is restricted to 127.0.0.1 by default to prevent unauthorized remote access to the cognition layer.
Remote Access
If remote access is required, you must:
- Set
NEXUS_WS_HOST=0.0.0.0 - Provide a secure
NEXUS_WS_AUTH_TOKEN
Branch Protection
We enforce rebase-before-merge to ensure a clean, linear history. Please rebase your branches against main before submitting for final review.
Reporting Vulnerabilities
Please report any security concerns directly to the Timmy Foundation core team.