fix(security): constrain image fallback hook to workspace (#1232) fix(settings): confine dashboard settings paths (#1231) fix(proxy): avoid exposing local auth token in daemon argv (#1230) fix(windows): pin cmd shell for wrapper launches (#1229)