- Bash scripts (
init.sh,ingest.sh,kit/*/scripts/fetch.sh) - Prompt templates in
kit/ - GitHub Actions workflows
- Do NOT open a public issue
- Use private security advisory
- Acknowledgment: 48h
- Critical: 7 days
- High: 14 days
- Medium/Low: 30 days
- ShellCheck on all bash scripts
- Gitleaks for secret detection