# Maintenance ## Stewardship Rules - Keep generated files, build outputs, copied SDKs, and raw firmware binaries out of Git unless they are the source of truth. - Keep credentials, tokens, dumps, private messages, session stores, and local machine paths out of commits. - Prefer small commits with clear intent and a matching issue or release note. - Preserve upstream attribution when code is copied, forked, or adapted. ## Routine Checks - README still describes what the project does. - Setup instructions still work. - Security policy is accurate for the current risk level. - Changelog records user-visible changes. - License status is explicit. ## Automation Gate - Confirm no tokens, session cookies, personal data, or exported credentials are committed. - Document required environment variables with safe example values only. - Add rate-limit and account-safety notes before any release.