    Spoke with @alopresto offline. He highlighted that is it important to 
maintain control of location of secure-hash.key file in order to prevent 
calling application from piping into a file that is controlled externally.  We 
want to keep it as secured as possible. 
    Concerning the documentation update recommendation that can be addressed in 
a separate item.
    Will merge shortly


