Kiro IDE Authentication Token Leak on macOS and Linux
Kiro IDE versions before 0.11.133 have a security issue where auth token cache files are world-readable on macOS and Linux—basically, other users on your machine could grab them. This is a real problem if you're sharing a system. Update to 0.11.133 or later right now to fix those permissions from 0644 to 0600.
source: [aws/security-bulletin]