1. Home Depot exposed access to internal systems due to an employee's mistake. 2. A private token was online for a year before being reported. 3. The token granted access to numerous sensitive repositories and systems. 4. Home Depot has no system for disclosing security flaws effectively. 5. The issue was fixed only after media intervention.