Security advisories · public disclosure

Vulnerabilities we found in real AI agents

Independent security research on real, self-hosted AI agents — we name the vendor and publish the advisory openly: confirmed, refuted, or corrected. This page is the disclosure. Method and remediation, not weaponized exploits.

How we disclose. TrustShell publishes its findings openly — this page is the disclosure. We're an independent researcher, not affiliated with any vendor, and we don't do private pre-notification; publishing here is how we inform users and defenders. We still don't hand out a weaponized exploit (the finding and the fix, not a copy-paste payload), and we hold our own findings to the same bar — if a claim doesn't reproduce, we retract it in public. Confirmed, refuted, or corrected: the exploit is the arbiter, not a vote.