All skills
cryptography-key-lifecycle
FoundationJIT onlyUse for cryptographic construction, envelopes, key lifecycle, compromise, destruction, or agility. Skip secrets, authentication, provider APIs, custom primitives, and compliance.
- Group
- Security & privacy
- Supported roles
- MainAnalysisTaskReview
- Source
- SKILL.md
Use when
Trigger signals that make this skill the right owner
- cryptographic construction construction-specific nonce policy envelope key rotation version routing compromise destruction recovery or agility changes
Do not use when
Anti-triggers — as binding as the triggers above
- generic secrets authentication-only provider mechanics custom primitives or legal compliance claims
- no cryptographic construction key transition decryptability or compromise boundary changes
Required inputs
What must be supplied before this skill can decide anything
- current task contract
- selected primary Professional Skill
- task-local trigger evidence
Output contract
What this skill owes the next role
- cryptographic lifecycle decision with policy, construction, applicable nonce policy, identity, envelope, rotation, recovery, compromise, destruction, agility, evidence limits, and owners
Escalation signals
When this skill must hand the decision back
- approved construction key authority applicable nonce policy decryptability compromise response destruction or migration remains unresolved
Loaded by
This skill never owns a task. These professionals may pull it in as Layer 3.
Targeted references
Each reference carries its own load condition. None of them enter context by default.
| Reference | Load when | Do not load when | Required by |
|---|---|---|---|
| primitives-nonces-and-envelopes.mdtargeted | Algorithm mode AEAD AAD nonce IV key wrapping or ciphertext envelope remains unresolved | Current approved construction and complete envelope contract are already fixed | AnalysisTaskReview |
| rotation-versioning-and-recovery.mdtargeted | Key versions rotation rewrap re-encryption decrypt compatibility backup recovery or escrow changes | No key transition or decryptability boundary changes | AnalysisTaskReview |
| compromise-destruction-and-agility.mdtargeted | Compromise revocation destruction cryptographic erasure deprecation or migration changes | No incident destructive or algorithm-transition decision changes | AnalysisTaskReview |