Evidence record / openhands

A dated record of one change, kept so the writing that cites it can be checked. Compiled from the sources listed below by the research run, not written for reading. The judgment lives in the signals and issues that cite it, below.

Security: Route ACP provider credentials via agent_context.secrets instead of acp_env

What Changed

Moved ACP agent provider credentials (API keys, base URLs) from deprecated acp_env channel to cipher-protected agent_context.secrets channel. User secrets and git provider tokens continue via agent_context.secrets. Provider credentials override same-named Secrets panel entries per prior priority logic.

Operator Implication

Operators running ACP agents must understand that provider credentials now route through cipher-protected secrets channel (more secure). Legacy acp_env channel is deprecated for credentials. Addresses security concerns from software-agent-sdk #3464 and agent-canvas #1039 regarding persistence safety.

Receipt

Finding metadata

Run: 2026-06-03-weekly-digest-2026-05-28_2026-06-03-frontier-v0

Finding ID: 2026-06-03-openhands-acp-creds-secrets

Source links

Primary links, including exact changelog lines when available.

Versioned source: run artifact