# Fixture: security-self-desc (design.md)

The table below is a documentation summary: each row mentions
the same keyword across multiple cells, so the row is a
documentation row rather than a configuration. The scanner must
NOT fire P1 on these rows.

## Documentation summary

| Approach | Has password? | Has token? | Has secret? |
|---|---|---|---|
| env vars only |  no password  |  no token  |  no secret  |
| vault lookup |  no password  |  yes token |  no secret  |

(This row mentions 6 keywords across 4 cells, including 3 cells
that mention `password|token|secret` — multi-hit table-echo.)

## Out of scope

Bare-prose paragraphs in this file do NOT mention any
security-sensitive keyword. All keyword mentions are confined
to the documentation table above.
