Skip to content

Tracking: alpha -> beta readiness #188

Description

@Jolah1

GhostKey is a live, on-chain-proven alpha (real mainnet vault; check-in, heir claim, guardian claim, and a mainnet recovery drill all verified). These are the gates to earn the beta label. Treat real funds as at risk until #183 lands.

The gates

Recommended order

  1. Beta gate: validate the no-Core heir recovery tool (largely built) #185 friendlier recovery and Beta gate: operational hardening (backups, load, monitoring) #187 backups first — they protect the founding users who are already here, and need no external dependency.
  2. Beta gate: move GHOSTKEY_MASTER_KEY to a KMS/HSM (envelope encryption) #184 KMS, which also de-risks Beta gate: reduce/clarify Door A (F2) custody exposure #186 (do Beta gate: reduce/clarify Door A (F2) custody exposure #186 right after).
  3. Beta gate: independent security audit #183 audit once the above are in and the scope is stable — you don't want to pay for an audit of code you're about to change.
  4. Promote to beta when Beta gate: independent security audit #183 is remediated, Beta gate: move GHOSTKEY_MASTER_KEY to a KMS/HSM (envelope encryption) #184/Beta gate: validate the no-Core heir recovery tool (largely built) #185 are shipped, and real-user validation has happened.

Marketing/loud growth waits for beta; "founding users, help me test, here's the open code" is the right mode until then.

Metadata

Metadata

Assignees

No one assigned

    Labels

    epicMulti-PR effortpriority:highHigh prioritytrackingTracking / parent issue

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions