Automated source scan
A scanner checks a limited set of public files for known risk patterns without running the project.
Read the review status before you try a Bot. Each listing records the source version and reports the automated source scan, human technical review, and Hermes Desktop test separately. Review the Bot’s requested access and approval points before using it.
A scanner checks a limited set of public files for known risk patterns without running the project.
A qualified person reads the relevant files and records findings. This review is unavailable at this time.
The exact project version is installed in a disposable profile and tested with a small task.
Official Hermes documentation, release notes, or source code supports the statement. The listing links to that source.
A Hermes Desktop test record names the Hermes version, computer system, date, exact project version, steps, and result. A later project version requires another test.
This is a plan someone can adapt. It does not claim that a downloadable package or working system already exists.
The project publisher described this behavior. Bot Cabinet has not reproduced it in a Hermes Desktop test.
Public submissions are closed. A planned automated source scan would read a fixed, limited set of public files without running submitted code. Profiles that require technical judgment would remain unpublished while human technical review is unavailable.
The scan records the repository, a fixed source version, the file that describes the Hermes package, its license, included paths, and required account names. A later source version needs a new scan.
The scan looks for possible credentials, memories, sessions, logs, personal information, and local computer paths.
The scan looks for instructions or code that can delete files, send data, run commands, contact outside services, stay active, or start on a schedule.
Projects that use powerful tools or unclear instructions would stay unpublished while human technical review is unavailable.
A separate test would install the exact project version in a disposable profile and try a small task. The automated source scan would not run submitted code.
Each Hermes profile keeps its own settings, memory, and history. The Bot can still use the files and tools that a person gives it permission to use.
Create a new public package for sharing. Keep credentials, memories, sessions, client material, and private instructions in the live profile.
Hermes profile packages do not include a built-in signature from the Registry. Record the exact version and review changes before updating.
Selected version-specific guidance links directly to official Hermes documentation and released source code. When those sources differ, both links are provided with an explanation.