Back to plugin

Security audit

AxonFlow Governance

Security checks for vulnerabilities and agentic risk

Overview

This is a disclosed governance plugin that sends agent activity to AxonFlow for policy checks and audit, with opt-outs and self-hosted configuration available.

Before installing, decide where governed data should go. For real, regulated, personal, or customer data, configure a self-hosted AxonFlow endpoint and consider disabling Community SaaS auto-registration and telemetry. Protect client secrets, license tokens, and per-user tokens, and account for the documented behavior that pre-execution tool checks fail open during network or endpoint outages.

SkillSpector was not run because this plugin release contains no bundled skills.

Static analysis

No suspicious patterns detected.