Security This open-core release is designed to be safe by default: Default provider is mock (no external calls). Live execution requires explicit confirmation + rate limiting. Risky actions are blocked unless tightly scoped. Excluded by design Tesla Fleet auth/token/pairing logic Private keys, certificates, refresh tokens If you are integrating a private provider, keep secrets out of the repo and out of config examples.