<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>keygrant blog</title><description>Notes on keeping secrets out of AI agents&apos; context.</description><link>https://keygrant.app/</link><item><title>Claude Code keeps printing my secrets: why hook redaction isn&apos;t enough</title><link>https://keygrant.app/blog/hook-redaction-isnt-enough/</link><guid isPermaLink="true">https://keygrant.app/blog/hook-redaction-isnt-enough/</guid><description>Agents leak API keys through output, tool-call arguments and generated code. Redacting output with hooks treats the symptom. Here&apos;s the architectural fix, and the base64 bug I found in my own redaction.</description><pubDate>Sat, 10 Oct 2026 00:00:00 GMT</pubDate></item></channel></rss>