Reporting a vulnerability
Found an issue? Email support@technicallynot.ai with "Security" in the subject before disclosing it publicly, so we can fix it first.
Response time and disclosure timeline: pending.
How it's built
- Runs locally. Your code and project files never go to our servers.
- No telemetry. Technically Not doesn't send usage data anywhere.
- No stored passwords or API keys. Each agent CLI signs in itself.
- Folder-trust questions. Folder-trust questions from your agent CLI show up as Needs you.
Updates
Installed copies check for updates at api.technicallynot.ai and offer them in the app; you choose when to install. See the changelog for what changed.
Code signing
Installers aren't code-signed yet, so Windows may warn before you run one.

