用诱饵仓库、登录态差分、文件系统追踪、网络出口捕获和删除证据,在登录前审计 Coding Agent 的仓库数据流。
Audit coding agent data flows before login with canary repositories, auth-state diffs, filesystem traces, egress capture, and deletion evidence.