Niro v0.1.78
Summary
General pentests now include focused third-party component coverage.
Changes
- A dedicated Scout identifies exposed frameworks and dependencies, researches current advisories, and proposes tests for exploitable behavior.
Security
- Third-party research can use the configured agent CLI's native public-web tools; exploit validation still runs through the attack-tool sandbox.
Compatibility and upgrade
No action required.
Known issues
checksums.txtdoes not coverniro.mcpb.- Release artifacts have no detached signatures, provenance attestation, or SBOM.