Under the hood
Remote host guidance now clarifies credentials are never copied to the local environment.
Remote host status text now explicitly tells the model that SSH keys, commit-signing keys, git credential helpers, and gh login are never copied into the local environment. It instructs running git push/pull, signed commits, and gh operations on the remote host itself rather than asking the user for a token.