This release contains no live controller, submission client, provider credentials, browser state, session transcript, or private research journal.
Please report a suspected credential exposure, unsafe artifact, or verifier-integrity issue through a private GitHub security advisory before public disclosure when exploitation could harm another user or service.
If a credential is ever committed, revoke it before changing repository history. Deleting the current file is not sufficient to invalidate a secret already copied or cached.