Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The documentation tells users to place sensitive credentials in environment variables without any warning about secure handling, storage, rotation, or leakage risks. While env vars are common, users may expose them through shell history, shared terminals, logs, process inspection, or misconfigured CI environments, leading to account compromise.
