- Never commit API keys, GitHub PATs, or
dbutils.secretsvalues to this repository. - Use Databricks secret scope
nyaya-dhwaniand/or a local.envfile that is gitignored. - If credentials were exposed (chat, screenshots, CI logs), rotate them at the provider (Sarvam, GitHub, Databricks) and update secrets only through secure channels.
See WORKSPACE_SETUP.md for storing secrets in the Free Edition workspace.