Picture this. Your coding assistant just refactored a microservice, updated the config, then accidentally pushed an API key to a public repo. No malice, no intent, just another “oops” from the AI that never sleeps. Multiply that by every copilot, model context protocol, and agent running across your stack, and