Security

Overview

Neotask एक security-first architecture के साथ designed है। Gateway default रूप से localhost से bind होता है, सभी sensitive data encrypted at rest होता है, और agent execution isolated containers में sandboxed हो सकती है।

Network Security

Loopback by Default

Gateway केवल 127.0.0.1 (localhost) पर listen करता है जब तक आप explicitly binding mode न बदलें। Default रूप से कोई external network exposure नहीं।

Authentication

सभी WebSocket connections को authentication आवश्यक है:

Remote Access Security

Remote access के लिए, recommended approach Tailscale VPN या SSH tunneling है, कभी भी Gateway को directly internet पर expose न करें।

Device Pairing

Pairing कैसे काम करता है

Gateway से connect होने वाला प्रत्येक client paired होना चाहिए:

  1. Device अपनी identity present करता है (fingerprint + public key)
  2. Gateway एक pairing challenge (nonce) issue करता है
  3. Device nonce को अपनी private key से sign करता है
  4. आप UI के माध्यम से device approve करते हैं
  5. Gateway future connections के लिए device token issue करता है

Trust Model

Encryption

Data at Rest

Data in Transit

Sandboxing

Docker-Based Isolation

Agent command execution Docker containers में sandboxed हो सकती है:

Sandbox Scopes

Scope विवरण
Per-session प्रत्येक session के लिए Fresh container
Per-agent Per agent Persistent container
Shared Agents में Shared container

Workspace Access

Sandboxed agents अपनी workspace directory (container में mounted) access कर सकते हैं लेकिन अपने workspace के बाहर host filesystem access नहीं कर सकते।

Exec Approvals

Control करें कि agents nodes और Gateway host पर कौन से commands execute कर सकते हैं:

Modes

Mode विवरण
Allowlist केवल pre-approved commands execute होते हैं
Ask Unknown commands user approval के लिए prompt करते हैं
Full कोई restrictions नहीं (सावधानी के साथ उपयोग करें)

Per-Node Configuration

प्रत्येक node (macOS, headless host) का अपना exec approval configuration है, locally stored। आप specific binaries allow कर सकते हैं (जैसे /usr/bin/docker, /usr/local/bin/terraform) जबकि बाकी सब block कर सकते हैं।

Elevated Mode

कुछ operations को directly Gateway host पर run करने की आवश्यकता होती है (sandbox में नहीं)। Elevated mode है:

Security Audit

Built-in security audit check करता है:

Permission दिए जाने पर Audit कई issues automatically fix कर सकता है।

Best Practices

  1. Gateway को loopback पर रखें, Remote access के लिए Tailscale या SSH उपयोग करें
  2. Sandboxing enable करें, Docker containers में agent commands run करें
  3. Exec allowlists उपयोग करें, Restrict करें कि agents nodes पर कौन से commands run कर सकते हैं
  4. Auth tokens set करें, loopback के लिए भी हमेशा token auth configure करें
  5. Agent permissions review करें, जहां possible minimal tool profiles उपयोग करें
  6. Neotask updated रखें, Updates में security patches शामिल हैं
  7. नियमित audit करें, Misconfigurations catch करने के लिए security audits run करें
  8. Plugin loading restrict करें, केवल trusted plugins install करें