Skip to content

docs(changelog): 2026-05-02 entry — hook redaction fix + scrub recipe#17

Merged
anthroos merged 1 commit intomainfrom
docs/changelog-redaction-fix
May 2, 2026
Merged

docs(changelog): 2026-05-02 entry — hook redaction fix + scrub recipe#17
anthroos merged 1 commit intomainfrom
docs/changelog-redaction-fix

Conversation

@anthroos
Copy link
Copy Markdown
Owner

@anthroos anthroos commented May 2, 2026

Adds a CHANGELOG entry for PR #16. Security-relevant: anyone running OpenExp before 2026-05-02 had broken secret redaction in the PostToolUse hook. Entry documents the bug, links to the fix, and gives users a concrete grep + rm recipe to scrub old observations.

The observations dir is in $HOME (not network-exposed by default), but backups/syncs carry the leaked secrets along — worth a heads-up.

Security-relevant: existing users should scrub
~/.openexp/observations/ if they installed before today. PR #16
fixed a redaction regression that let Bearer/api_key/password
values reach disk verbatim. Entry documents the bug, the fix, and
gives users a concrete grep + rm recipe to clean up old
observations.
@anthroos anthroos merged commit 72d78cf into main May 2, 2026
@anthroos anthroos deleted the docs/changelog-redaction-fix branch May 2, 2026 05:19
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant