Added bearer-token security metadata so the local API documentation interface can authorize calls to protected endpoints. The project built successfully, but interactive browser use was not recorded.
- What worked
- The security-scheme configuration fit into the existing API documentation setup without requiring a separate test client.