fix: subprocess security hardening
- Fix shutdown deadlock: terminate process before joining read thread
- Add 10MB line buffer limit to prevent OOM from malicious MCP servers
🤖 Generated with [Claude Code](https://claude.com/claude-code)
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>