This is a comment left during a code review.
Path: server/README.md
Line: 42
Comment:
**Secrets Not Gitignored**
The note says `.env` is ignored by default, but the repository ignore file does not include `.env`. A user following these steps can commit `STRIPE_SECRET_KEY` or `STRIPE_WEBHOOK_SECRET` while relying on this safety note.
How can I resolve this? If you propose a fix, please make it concise.
The note says
.envis ignored by default, but the repository ignore file does not include.env. A user following these steps can commitSTRIPE_SECRET_KEYorSTRIPE_WEBHOOK_SECRETwhile relying on this safety note.Artifacts
Repro: git check-ignore and status output showing .env is not ignored
Prompt To Fix With AI
Originally posted by @greptile-apps[bot] in garlobrian52/agentic-commerce-protocol#1 (comment)