Use this repository's private GitHub vulnerability reporting when available. Do not post secrets or private session logs in public issues. If private reporting is unavailable, open an issue asking for a private reporting channel without disclosing exploit details.
This project coordinates tools that can execute commands. Worktree scope checks are not an operating-system sandbox. Model access and provider permissions remain your responsibility. Credentials and runtime artifacts must stay outside Git.