Do not put raw Codex logs, database exports, screenshots, credentials, or production identifiers in snapshots or issue reports. The command-line tools accept only an explicitly named JSON file (or stdin), read it once, and do not scan directories, poll services, use a network, or write files.
Please report a security issue privately to the repository owner rather than including sensitive data in a public issue. This unofficial skill is an acceptance aid, not a security boundary or an upstream Desktop fix.