AI SRE AgenticOps for Kubernetes and cloud infrastructure.
Requesting a private security contact (please enable private vulnerability reporting)
MCP HTTP gateway is unauthenticated by default and binds 0.0.0.0 — anyone on the network can mutate the cluster
`patch_workload` interpolates the workload name into the API path unquoted — namespace guard bypass via path traversal
`change_success_rate` counts pending / dry-run / skipped changes as successes
[Feature]: create_pv constraints are missing from the LLM prompt