Skip to content

Security: JamesWeatherhead/CodexProLong

Security

SECURITY.md

Security

This release contains no live controller, submission client, provider credentials, browser state, session transcript, or private research journal.

Please report a suspected credential exposure, unsafe artifact, or verifier-integrity issue through a private GitHub security advisory before public disclosure when exploitation could harm another user or service.

If a credential is ever committed, revoke it before changing repository history. Deleting the current file is not sufficient to invalidate a secret already copied or cached.

There aren't any published security advisories