Contact
How to reach the agentcookie maintainer: GitHub issues for bugs and questions, a DM on X for sensitive security findings.
Bugs, feature requests, and questions
Open an issue at https://github.com/mvanhorn/agentcookie/issues. That is the right channel for bugs, feature requests, questions about setup or the threat model, and anything else that does not need to stay private. Issues are public, searchable, and the place where fixes get tracked, so please check the existing ones before filing a new one.
Sensitive security findings
If you have found something that should not be disclosed publicly before it is fixed, send a direct message to the maintainer on X at https://x.com/mvanhorn. Please do not put exploit details in a public issue. Once a fix has shipped, a public issue or a note in the release is welcome.
What to include in a report
The agentcookie version on each machine (agentcookie --version), the operating system and version on the source and on each sink, and the redacted output of agentcookie doctor from both sides. Doctor output is designed to be safe to share, but read it before you paste it. Never include cookie values, secrets, pairing codes, or the contents of ~/.config/agentcookie in a report; describe the shape of the problem instead.
What to expect
agentcookie is maintained by one person, so responses are best-effort and can take a few days. There is no email address published for this project and no phone number; the two channels above are the only ones. Automated outreach, recruiter mail, and link-exchange requests will not get a reply.