Orrery.

Trust center

Security

Orrery is a hosted, public MCP catalog. Its security boundary is deliberately narrow: callers receive declared tools and signed results, not arbitrary command, filesystem, or deployment access.

What we can substantiate

  • Public Star and constellation results are signed Ed25519 Envelopes; public keys are at /.well-known/orrery/keys.json.
  • Durable artifact downloads are authorized by stored metadata and expire after 15 minutes.
  • Public Stars expose bounded declared tools; Orrery does not provide arbitrary shell or filesystem execution.

Report a vulnerability

Please use private GitHub Security Advisories for vulnerabilities. Product questions and non-sensitive defects belong in the public issue tracker. Include the affected URL/tool, reproduction steps, impact, and any receipt or request identifiers that are safe to share.

Machine-readable disclosure metadata: /.well-known/security.txt.