More secrets caught, same zero-cost positioning.\n\n- New patterns: npm tokens, SendGrid, Telegram bots, Azure storage connection strings, JWTs, explicit AWS secret keys.\n- Test fixtures are built at runtime — GitHub's own push-protection blocked a literal fake SendGrid key in a test file, in exactly the way Codex Guard flags on PRs. 😄\n- AI whole-PR summary gate dropped by design — per-token LLM cost contradicts free/deterministic Codex Guard.\n- 74 tests.
🛒 Now on GitHub Marketplace: https://github.com/marketplace/actions/codex-guard-pr-quality-gate