Please report suspected vulnerabilities privately through the repository's security advisory process. Do not open a public issue for exploitable behavior, secret exposure, sandbox bypasses, or credential handling defects.
If the vulnerability involves a private workflow repository, report it through that repository's private process as well.
The platform's security model — permissions, the sandbox credential deny-list, bundle integrity, approval gating, encrypted secrets, secret-handling rules, and the public/private scope boundary — is documented in docs/security.md.