Kairos · Key Maker
Proposed technical architecture · v0.1

The door system, not a universal key.

Key Maker is a control plane for information, identity, authority, working evidence and revocation. It leaves source data at the source and refuses to call access complete until the approved job works.

Future-state proposalInternal · Kairos teamFirst perimeter · 11 roomsAs of 27 Aug 2026
01 · Governing unit

Commission a source connection, never merely a key.

source + principal + authority + grant + credential custody + connector + evidence

For operational systems the same unit becomes system + identity + authority + entitlement + custody + enforcement path + evidence. Desired and actual state remain separate. “Should have” never silently becomes “has,” and “vendor says granted” never silently becomes “verified working.”

Scope

The first proving perimeter is the existing eleven rooms: BigQuery, CJ, impact.com, Omnisend, Ahrefs, RichAds, Mysterium business API, GoProxies, Grafana/VictoriaMetrics, ClickUp and the Slack public-channel export. The eventual estate includes every MN system that holds consequential information or grants consequential access.

Non-goals

  • No universal master password and no store of raw credential values.
  • No forced warehouse or uncontrolled copy of every source.
  • No automatic truth engine: readable data can still be incomplete, incomparable or wrong.
  • No AI with unbounded administrator rights.
  • No green access state without a live acceptance fixture.
  • No bypass of vendor controls, contracts, consent, privacy or organizational authority.
02 · Domain model

The information contract is part of the room.

Room / system

The governed perimeter

Purpose, class, grant holders, sensitivity, control mechanism, fixture, revocation path and enforcement capability.

Room legend

The usable meaning

Definitions, grain, identifiers, history, freshness, lineage, permitted uses, supported decisions and known conflicts—versioned with the room.

The same authorized read path exposes both. A steward approves legend changes but is never the runtime source of meaning. Removing that person from the workflow must not prevent an authorized human or AI from interpreting the current accepted contract.

Other core objects

ObjectPurposeCritical boundary
IdentityHuman, contractor, service, agent or emergency identity with sponsor and lifecycle.A service credential never hides inside a human account.
Cross-source relationshipVersioned identifiers, time/grain boundary, transformation and permitted join.Candidate relationships never silently become accepted joins.
Role packVersioned desired-access template with exact inclusions, exclusions and expiry.A novel exception is not standard onboarding.
EntitlementSmallest capability: scope, method, object, history, environment, expiry.Read, write, delete, spend and user-management remain separate.
Authority ruleThe human decision rule that allows an entitlement to exist.AI may execute authority; it may not manufacture it.
EvidenceTimestamped proof of desired state, actual state, acceptance, denial and drift.No secrets or raw customer data in the control-plane record.

State model

NOT_AUTHORIZED → REQUESTED → GRANTED → AUTHENTICATED → USEFUL_READ → COMMISSIONED → DURABLE

Independent qualifiers remain visible: OVERPRIVILEGED, PERSON_BOUND, EXPIRING, STALE, UNVERIFIED, SCOPE_PARTIAL, MAPPING_PARTIAL, MUTATION_POWER_PRESENT, REVOCATION_UNPROVED and OFFBOARDING_SLA_UNSUPPORTED.

03 · Proposed architecture

One graph; separated powers.

The control plane stores contracts, desired and actual state, policy and evidence. It does not store the estate. Connectors are capability-specific and visible; an export, a vendor admin action, an SSO grant and a read-only API are never presented as equivalent.

04 · Human authority

AI operates the panel. Humans decide what power exists.

Three human Key Holder roles represent organizational/security authority, business or room authority, and people/operational authority. Any two are required for a master-switch decision. No identity approves its own exception.

TierWho decidesExamples
Tier 0AI executes settled policyApproved role-pack onboarding, expiry, standard moves, fixtures, drift repair, suspension and downstream cleanup.
Tier 1Room authorityAn exception inside existing room policy, new contractor duration, or unrecorded business purpose.
Tier 2Two Key HoldersNew policy, write/delete/spend/root power, sensitive membership, master connector, break-glass elevation, or changing the approval rules.
05 · Service objective

Fifteen-minute standard onboarding.

T0: an authorized sponsor selects a pre-approved role pack for a verified identity. T1: every required room reaches its pack-specific accepted state and its live fixture passes. Objective: T1 − T0 ≤ 15 minutes.

1 · VerifyIdentity, sponsor, dates and role-pack version.
2 · ComputeThe complete desired entitlement graph.
3 · PreviewEvery change and every excluded power.
4 · ExecuteAutomated connectors concurrently; route exact manual packets.
5 · ProveRun room fixtures and report ready, partial, blocked or policy decision required.

A role pack that still requires ad hoc approval or vendor-menu archaeology is not eligible for the standard-onboarding objective.

06 · Service objective

Thirty-second controlled-path offboarding.

T0: the signed suspension or offboarding event is accepted by the policy engine. T1: the identity is denied at every MN-controlled enforcement point. Production objective: T1 − T0 ≤ 30 seconds at a percentile and geographic boundary still to be certified.

A signed identity-kill event propagates deny-first. Controlled enforcement points invalidate the identity immediately. Downstream workers then revoke vendor sessions, remove memberships, transfer ownership, rotate affected shared credentials and collect denial evidence. Cleanup failure never restores access.

Honesty boundary. A room with an unmediated, long-lived personal token cannot claim the 30-second objective. It remains OFFBOARDING_SLA_UNSUPPORTED until the path is controlled or removed.

The 30-millisecond limit test

Stretch benchmark: ≤ 30 ms for locally controlled enforcement points where cached edge denial makes the experiment meaningful. It is an engineering provocation, not a customer promise and not a production-readiness gate.

07 · Switchboard

Five views of one entitlement graph.

ViewQuestion answered
PersonWhat should this identity have, what does it actually have, and what happens next?
RoomWho and what can enter this room, including stale accounts, contractors and inherited roles?
InformationWhat does the room contain, what does it mean, what can it support, and where does it conflict?
Role packWhat is the full capability bundle, its exclusions, authority version and automation coverage?
EventWhat changed during join, move, promote, demote, suspend or leave—and what evidence remains?

The control plane must know the whole graph. Its interface must not reveal the whole graph to everyone. Personal, manager, room-steward, Key Holder and sealed visibility classes remain separate.

08 · Delivery sequence

Prove the model before automating power.

Phase 0 · Authoritative model

Bind all eleven rooms to one registry, attach their legends, render desired versus actual state and refuse false green.

Phase 1 · Role pack

Implement three packs, automate highest-control connectors and prove one standard identity within 15 minutes.

Phase 2 · Kill path

Choose the identity root and enforcement perimeter, propagate signed denial and prove controlled access ends within 30 seconds.

Phase 3 · Estate

Expand to code, cloud, finance, communications, support and HR only through versioned contracts and fixtures.

09 · Acceptance contract

The system is not ready until it proves these.

  1. Registry and evidence bundle contain the same complete room set.
  2. Every room exposes a versioned legend with definitions, grain, identifiers, measured history, freshness, uses, supported decisions and relationship state.
  3. Removing the steward from runtime does not prevent an authorized reader from interpreting the current accepted meaning.
  4. A known contradiction remains visible with both provenances; the system cannot silently merge it.
  5. A role-pack change names every affected entitlement before execution.
  6. Standard onboarding reaches verified readiness within fifteen minutes.
  7. Offboarding denies the identity within 30 seconds at the certified perimeter.
  8. Vendor cleanup failure does not restore access.
  9. A direct personal token is flagged outside the 30-second guarantee.
  10. No identity approves its own exception.
  11. One Key Holder cannot perform a Tier 2 action alone.
  12. AI cannot widen a role pack while executing it.
  13. A stale or empty fixture cannot produce green.
  14. Sensitive membership remains hidden from unauthorized dashboard users.
  15. Every grant and revoke has a durable authority and execution receipt.
10 · Open decisions

Implementation choices still requiring evidence.

  • Named Key Holders and backups.
  • Sensitive and sealed-room taxonomy.
  • Authoritative identity provider and enforcement technology.
  • Certified percentile and geographic boundary for the 30-second objective.
  • Exact perimeter for the 30-ms stretch benchmark.
  • Systems that can be mediated without a new single point of failure.
  • Exact first role-pack entitlements and cross-source contracts.
Mammoth Protocol boundary. No signed Opportunity Schedule means no material pursuit. This architecture authorizes internal definition and cheap, reversible validation only—not an external pilot, customer outreach, public release, material spend, transfer or commercialization.
11 · Machine record

A small contract for agents.

The document’s claims, status and links are repeated below as a machine-readable record. The prose remains authoritative where this short record omits detail.

{
  "surface": "key-maker-technical-architecture",
  "status": "proposed-future-state",
  "version": "0.1",
  "as_of": "2026-08-27",
  "initial_perimeter_rooms": 11,
  "onboarding_objective_minutes": 15,
  "offboarding_objective_seconds": 30,
  "offboarding_stretch_benchmark_ms": 30,
  "stretch_is_customer_promise": false,
  "press_release": "/key-maker/",
  "mammoth_gate": "no-signed-opportunity-schedule-no-material-pursuit"
}