Gist: A security alert reports a medium-risk vulnerability where API access tokens can be exposed in URL parameters. The post emphasizes log, history, and referrer leakage and recommends using authentication headers instead.
Signal reason: It identifies a missing or inadequate security safeguard for token handling.
