Please report security issues privately via GitHub Security Advisories. Please don't open a public issue for a security report. We aim to acknowledge reports within a few days.
- convotree is a local tool: no backend, no telemetry.
- API keys are read from
<PROVIDER>_API_KEYenvironment variables, a local.env, or~/.convotree/config.json. convotree config set-keystores the key in plaintext in~/.convotree/config.json. On shared machines, prefer environment variables. On POSIX systems you canchmod 600 ~/.convotree/config.json.- Keys are sent only to the provider endpoint you configure (Anthropic, OpenAI, or an OpenAI-compatible base URL) — nowhere else.
- The MCP server speaks JSON-RPC over stdio only; it opens no network port.
convotree is pre-1.0; security fixes land on the latest 0.x release.