Discussion about this post

User's avatar
Vita Haas's avatar

The five pillars feel right, and the dead man's switch on expiration is the most underrated idea -- flipping the default from "trusted until proven otherwise" to "trusted until actively renewed" is a much healthier baseline.

The part I keep circling is auditability. Logging actions is tractable. Logging why in a way that's interpretable to someone not deep in the stack is part interpretability research, part UX design, part org process, and we don't even have a clear picture of what "solved" looks like yet.

The open question is still: who actually enforces any of this? IETF and OWASP produce standards, not mandates. That gap is there.

2 more comments...

No posts

Ready for more?