As someone who keeps his dotfiles on Github (but is sure, for the moment at least, that there's nothing sensitive in there) I'm having a hard time imagining what sort of sensitive information a shell alias or a vim macro could expose to a potential attacker. Can you be more specific?