HSM / KMS Authority
Protect the authority to use the key
Daniel Ortiz — Security Officer
Customer Environment
HSM / KMS Console
Enterprise Key Management Console
- IAM Session
- VALID
- PAM Session
- ACTIVE
- HSM Key
- AVAILABLE
Requested action
- Operation
- SIGN_RELEASE_MANIFEST
- Key
- ROOT-SIGNING-KEY-01
- Environment
- PRODUCTION
- Artifact
- release-manifest-v5.4.2.json
- Artifact Digest
- SHA3-512:demo-digest-release-manifest-v5.4.2
- Operator
- Daniel Ortiz — Security Officer
- Status
- PENDING
- Use count
- 0
PQMythosKey intercepts the protected operation before HSM invocation.
PQMythosKey
- Live Human Verification
- Purpose / Policy Check
- Exact Context Binding
- PQ Authority
- Authority State
- Tenant
- tenant-a
- Subject Reference
- lab:daniel-ortiz
- Action Type
- SIGN_ARTIFACT
- Transaction / Operation ID
- —
- Purpose
- Sign Production Release Manifest
- Resource
- ROOT-SIGNING-KEY-01
- Payload Digest
- —
- Lifecycle Epoch
- 0
- Challenge ID
- —
- PQ Profile
- lab-demo
- PQTrustEvidence Status
- NOT_BOUND
- Authority State
- REQUESTED
- Consume Status
- NONE
- Business Execution Count
- 0
- Consume Attempts
- 0
- Successful Consumes
- 0
Client-safe fields only. Private keys, biometrics, face images, templates, and API secrets are never shown.
Outcome
- Permitted
- Denied
- Consumed
- Executed
- Blocked
Attack Simulator
Enabled for this scenario: run-normal, substitute-key, substitute-artifact.