A 32M-parameter classifier that reads one line of code, config, log or prose and scores whether the line holds a literal credential: a password, API key, access token, private-key header, connection string with a password, or an Authorization header value. It runs on a laptop CPU in about 4 ms per line, so you can score every line of a trace, log or diff before you share it. Use it next to a rule-based scanner, not in place of one. On 1,264 human-written lines it finds about 4 in 5 credentials and is right about 9 times in 10 when it flags a line. It also misses about 1 credential in 5, so it must never be the only check before you publish a file. predictonnx.py applies the temperature…