Codex Loop Engineering is a workflow plugin and does not require bundled secrets, API keys, or private service credentials.
Before sharing loop artifacts publicly, review them for:
- project source code that should remain private;
- command output containing paths, usernames, tokens, or environment values;
- screenshots or exported reports with confidential information;
- Claude or Codex packets that include private repository context.
Report security issues through GitHub issues if the repository is public, or contact the repository owner directly through their GitHub profile.