Security, privacy and audit requirements · C0897
How would key ceremonies be run and recorded?
Designed, not yet built
Short answer
Designed, not built: there is no code for this in the pilot. For reference, REQ-4603 (a top-priority requirement, all three tiers) says key ceremonies must be scripted, witnessed, logged, with split custody (Shamir) and documented recovery. Check: ceremony checklist artifact stored.
This is designed, not built.
- Specification item
- REQ-4603
- Specification priority
- P0 (of P0 to P3)
- Tiers
- Small, Medium, Large
Status as of September 30, 2026. Version 0.2.0, synthetic data only. See what's built today. Not legal, medical or security advice.
Related answers
- Where would root and master keys be kept? Designed
- How often would encryption keys be rotated? Designed
- Which password hashing method does the specification call for? Designed
- How are encryption keys arranged, from the root key down to the data key? Designed
See it in context: Key management · Search the help center · Ask a question