Please do not publish credential material in a GitHub issue.
Before reporting a problem, remove API keys, OAuth tokens, cookies, Authorization headers, x-api-key values, authenticated CCR management URLs, personal prompts, and local filesystem details.
For the project's credential-handling and safe-sharing guidance, see docs/SECURITY.md.
For a suspected vulnerability, use GitHub's private vulnerability reporting feature when it is available for this repository.