# Fixture: security-self-desc (tasks.md)

This fixture exercises three prose contexts in which a security
keyword must NOT fire as P1: fenced code, blockquote, and table row
echo. There are NO bare-prose keyword lines in this fixture.

## Tasks

### Task 1: anti-pattern inside a fenced ``` block

```text
The scanner fires on `password`, `token`, `api_key`, and `secret`
substrings when they appear in bare prose. This sentence is
documentation, not an endorsement.
```

### Task 2: anti-pattern inside a blockquote

> The scanner also fires on the `password` substring. This line is
> documentation inside a `> ...` blockquote.

### Task 3: documentation summary

This task contains no security keywords on bare prose lines.
