Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The example prints the full API token to the terminal, which can expose long-lived credentials through shell history, terminal scrollback, screen sharing, logging, or multi-user systems. Because the token is reusable and non-expiring, accidental disclosure could allow unauthorized API use until manually revoked.
