Specs¶
Specs are point-in-time decision records, so they live on the project wiki rather than in this repository. This page is the index; it carries no spec bodies.
| Spec | Status | What it settles |
|---|---|---|
| 0001 — A KMS-backed OpenPGP encryption identity | DRAFT | Why RSA cannot decrypt OpenPGP, why ECDH via KEY_AGREEMENT can, and why the module provisions two keys and two roles |
Reference specs from the documentation — never restate their decisions here, which only creates a second copy to drift.