Credentials go to Google Secret Manager, never to Firestore.
The value is posted over HTTPS, written straight to Secret Manager, and read back
only inside the execution path. No endpoint returns a stored value — this page can
confirm that a credential exists and show its last four characters, and that is all
it will ever be able to do. A wallet private key is not a password; it is the funds
themselves, and a leak is irreversible with no recourse.
Settings audit trail
| When | Who | Field | From | To | Note |
|---|