Security Notice: Exposed HuggingFace API key detected

Author: harvcker2-i-got-locked-out-of-my-accCreated Apr 12, 2026Updated Apr 12, 2026

Hi there,

We found an exposed HuggingFace API key in this repository (ending in ...JmAV).

What happened: Your API key was committed to a public file and is visible to anyone. It has been viewed 7,152 times.

Recommended steps:

  1. Revoke or rotate this key immediately
  2. Check your billing dashboard for unexpected charges
  3. Generate a new key and store it in environment variables or a secrets manager
  4. Add your key patterns to a .gitignore or use tools like git-secrets to prevent future leaks

Source: binary-husky/gpt_academic