Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The instructions tell users to set a channel secret directly via CLI examples but provide no warning that this value is sensitive, should not be logged, and should be stored/handled securely. This can lead to accidental exposure through shell history, screenshots, shared terminals, or copied docs, enabling unauthorized access to the channel integration.
