-
Notifications
You must be signed in to change notification settings - Fork 0
All issues
Issue creation is restricted in this repository
Issues
is:issue state:open
is:issue state:open
Search results
v1.0.0: production deployment docs — HA topology, capacity planning, runbook
area/deploymentDocker, Helm, k8s operator, deployment topologyDocker, Helm, k8s operator, deployment topologykind/docsDocumentationDocumentationStatus: Open.v1.0.0: chaos/fault testing — journal partition, RoT outage, audit sink backpressure
kind/featureNew capabilityNew capabilitykind/securitySecurity-relevant changeSecurity-relevant changeStatus: Open.v1.0.0: performance targets — 1000 sign ops/sec at p99 < 50ms (AWS KMS RoT, single pod)
area/observabilityMetrics, traces, logsMetrics, traces, logskind/featureNew capabilityNew capabilityStatus: Open.v1.0.0: backward-compatibility guarantees for the algebra + REST surface
area/server-tierPekko-based server modules (server, http, kmip, mcp, agent-ai)Pekko-based server modules (server, http, kmip, mcp, agent-ai)kind/docsDocumentationDocumentationStatus: Open.v1.0.0: full KeyService coverage matrix on every shipped RoT
area/cryptoCryptographic ops, RoT, key lifecycleCryptographic ops, RoT, key lifecyclekind/featureNew capabilityNew capabilityStatus: Open.Event journal snapshotting — bound boot-time replay
area/server-tierPekko-based server modules (server, http, kmip, mcp, agent-ai)Pekko-based server modules (server, http, kmip, mcp, agent-ai)kind/featureNew capabilityNew capabilitypriority/mediumShould land in this milestoneShould land in this milestoneStatus: Open.tech-debt: extract AuditingAgentTokenIssuer decorator (replace inline audit in HttpRoutes)
area/auditAudit log, sinks, fan-outAudit log, sinks, fan-outarea/iamIdentity, OIDC, JWT, agent tokensIdentity, OIDC, JWT, agent tokenskind/refactorInternal change with no behaviour deltaInternal change with no behaviour deltapriority/lowNice to haveNice to haveStatus: Open.NIST AI RMF / EU AI Act compliance mapping doc
area/ai-governanceAgent registry, kill-switch, governance featuresAgent registry, kill-switch, governance featuresarea/complianceSOC2 / PCI / HIPAA / NIST AI RMF / EU AI ActSOC2 / PCI / HIPAA / NIST AI RMF / EU AI Actgood first issueGood for newcomersGood for newcomershelp wantedExtra attention is neededExtra attention is neededkind/docsDocumentationDocumentationpriority/mediumShould land in this milestoneShould land in this milestoneStatus: Open.Compliance reports: SOC2 / PCI / HIPAA exportable
area/ai-governanceAgent registry, kill-switch, governance featuresAgent registry, kill-switch, governance featuresarea/complianceSOC2 / PCI / HIPAA / NIST AI RMF / EU AI ActSOC2 / PCI / HIPAA / NIST AI RMF / EU AI Acthelp wantedExtra attention is neededExtra attention is neededkind/featureNew capabilityNew capabilitypriority/mediumShould land in this milestoneShould land in this milestoneStatus: Open.Multi-tenant Aegis: per-tenant isolation across keys, agents, audit, policies
area/multi-tenancyPer-tenant isolationPer-tenant isolationkind/featureNew capabilityNew capabilitypriority/highBlock this milestone if not doneBlock this milestone if not doneStatus: Open.SoftHSM Testcontainer for CI integration testing
area/cryptoCryptographic ops, RoT, key lifecycleCryptographic ops, RoT, key lifecyclegood first issueGood for newcomersGood for newcomerskind/featureNew capabilityNew capabilitypriority/mediumShould land in this milestoneShould land in this milestoneStatus: Open.PKCS#11 root-of-trust adapter (Luna / nShield / YubiHSM / CloudHSM / SoftHSM)
area/cryptoCryptographic ops, RoT, key lifecycleCryptographic ops, RoT, key lifecyclekind/featureNew capabilityNew capabilitykind/securitySecurity-relevant changeSecurity-relevant changepriority/highBlock this milestone if not doneBlock this milestone if not doneStatus: Open.