v1.14.0 — private-infra-patterns secret channel
Immutable
release. Only release title and notes can be modified.
Adds an optional private-infra-patterns secret to python-quality-gate.yml, forwarded into the fitness gate step as PRIVATE_INFRA_PATTERNS, so a consumer whose tc-fitness run reads a private-infra secret-scan detector (e.g. kairix F73) can adopt the reusable without the detector silently no-opping. Backward compatible (optional, empty default). Also fixes the security-scan self-test caller (grant actions:read) so its workflow_call contract is exercised again.