Do not publish credentials, private repository URLs, local machine paths, browser profiles, cookies, bearer tokens, screenshots containing sensitive data, generated test logs, or private coordination artifacts.
If a security issue is found, report it through the repository maintainers instead of opening a public issue with exploit details.
Package artifacts must not include temporary audits, private memory files, local configs, generated browser logs, screenshots, or session data.