{"found":true,"collection":"patterns","library_url":"https://www.grokbotdb.com/library/pat.never-paste-a-credential-in-chat","generated":"2026-09-06T05:32:11Z","citation":["Quote the record id and its source_url (or provenance if there is no URL).","Include last_verified or observed_at when present. Do not present an old date as current.","If tier is community and confidence is low, say so. Do not launder it into a fact.","If the database does not hold the answer, say that. Do not invent Grok Bot product claims.","Contradictions are data: when conflicts_with is present, report both records rather than picking a favourite.","Deprecated and removed records stay visible. They are history, not current guidance."],"record":{"id":"pat.never-paste-a-credential-in-chat","name":"Never paste a credential into a message","category":"safety","problem":"A tool or workflow asks for a password or API key in an ordinary chat message.","technique":"Stop and use the takeover instead. For API keys, use the supported secure secret request, where the value is masked, excluded from the transcript, and not shown to the model.","why_it_works":"Chat messages and ordinary files are readable context; the secret request is not.","when_to_use":"Any credential, always.","manual_ref":"1.4","evidence":"documented","source_url":"https://cursor.com/help/grok-bot/secrets","related":["pat.session-not-secret"],"confidence":"high","first_seen":"2026-09-03","last_verified":"2026-09-03"}}