# Security

- No secrets are committed.
- No credentials are copied to shared review directories.
- Future Noco PostgreSQL access must be least privilege and read only.
- Future Noco API mutation credentials must be isolated from read access.
- Future MCP tools must not expose arbitrary SQL or shell access.
- Unknown ownership, workflow state, or field ownership must fail closed.
- Production writes require explicit phase approval.
- Destructive actions require explicit approval.
