Repository navigation
Module security Roadmap
github-actions[bot] edited this page Sep 28, 2026
·
26 revisions
Navigation: Home > Modules
Roadmap-Hinweis: Vage Bullets ohne Akzeptanzkriterien in Checkbox-Tasks ueberfuehren. Format:
- [ ] <Task> (Target: <Q/Jahr>).
Production-grade security stack with transport/auth/access-control, encryption/key-management, auditing, and threat-detection components in active use.
- [~] Security hardening wave Phase 2+3: cryptographic assurance, policy enforcement consistency, and operational resilience (Target: Q4 2026)
- [~] Phase 2 Cryptography & Key Management Hardening (Target: Q4 2026)
- Key-lifecycle validation tests: K-LIFE-01..K-LIFE-04 (tests/security/test_security_phase2_crypto_hardening_focused.cpp) (2026-08-07)
- Crypto error-path tests: K-ERR-01..K-ERR-04 (fail-closed enforcement) (2026-08-07)
- Key-provider failover tests: K-PROV-01..K-PROV-04 (Vault, HSM, PKI) (2026-08-07)
- Phase 2 benchmarks: K-ROT-01..K-ROT-04 in bench_security_phase2_crypto_gates.cpp (2026-08-07)
- Production validation: Vault/HSM/PKI hardening + failover/fail-closed matrix tests (
tests/security/test_security_wavec_production_validation_focused.cpp) (2026-08-17)
- [~] Phase 3 Policy & Data-Protection Hardening (Target: Q4 2026)
- RLS regression tests: P-RLS-01..P-RLS-04 (tests/security/test_security_phase3_policy_hardening_focused.cpp) (2026-08-07)
- Policy-merge tests: P-MRG-01..P-MRG-04 (deny precedence, precedence rules) (2026-08-07)
- Deny-by-default tests: P-DENY-01..P-DENY-04 (timeout, concurrent updates) (2026-08-07)
- Query masking tests: P-MASK-01..P-MASK-02 (PII redaction, audit trail) (2026-08-07)
- Phase 3 benchmarks: P-MRG-01..P-MRG-05 in bench_security_phase3_policy_gates.cpp (2026-08-07)
- Production validation: real-query-workload simulation + policy-merge/atomicity validation (
tests/security/test_security_wavec_production_validation_focused.cpp) (2026-08-17)
- [~] Phase 4a Audit Export Hardening β Wave C Batch 1 (Target: Q4 2026)
- [~] High-volume stress tests for audit export reliability (Target: Q4 2026)
- EXPORT-STRESS-01..EXPORT-STRESS-10: 10 focused stress test cases in
src/security/test_audit_export_stress_focused.cpp(2026-08-18) - Sustained load validation: 1000+ events/sec for 5 seconds (2026-08-18)
- Atomicity under concurrent exports: 4 threads Γ 10 exports each (2026-08-18)
- Idempotency with duplicate detection via bundle IDs (2026-08-18)
- Crash-recovery checkpoint validation at 10% intervals (2026-08-18)
- Client disconnect and recovery scenarios (2026-08-18)
- Memory pressure graceful degradation (2026-08-18)
- Event loss detection and reliability gates (2026-08-18)
- Export latency p95/p99 under sustained load (2026-08-18)
- Recovery time after disconnect: β€2s gate (2026-08-18)
- EXPORT-STRESS-01..EXPORT-STRESS-10: 10 focused stress test cases in
- [~] Audit export reliability gates and metrics (Target: Q4 2026)
- ExportMetrics struct: export_start_ms, export_end_ms, events_sent, events_confirmed, resend_count (include/security/security_evidence_collector.h) (2026-08-18)
- export_atomicity_guarantee() method: all-or-nothing semantics (2026-08-18)
- export_idempotency_check() method: deduplication on retry (2026-08-18)
- lastExportMetrics() method: retrieve metrics from last export (2026-08-18)
- Crash-recovery mechanism: checkpoint at 10% export intervals (2026-08-18)
- [~] Export performance benchmark gates (Target: Q4 2026)
- bench_audit_export_gates.cpp with 5 benchmarks: latency, rate, file throughput, recovery time, atomicity/idempotency checks (2026-08-18)
- Export rate gate: β₯10,000 events/sec (p99) (2026-08-18)
- Export latency gate: β€500ms per 1000-event batch (p99) (2026-08-18)
- Recovery time gate: β€2s after disconnect (p99) (2026-08-18)
- Gate manifest baseline: benchmarks/wave9/audit_export_gate_manifest.json (2026-08-18)
- [~] High-volume stress tests for audit export reliability (Target: Q4 2026)
- [~] Phase 4b Retrieval Policy Enforcement (Deny-by-Default Security Guardrails) (Target: Q4 2026)
-
Specification Document:
src/security/RETRIEVAL_POLICY_ENFORCEMENT.md(2026-09-24 CREATED) -
Core Security Components:
-
RetrievalPolicyEnforcerβ tenant-isolated policy validation with multi-tenant access control -
PolicyContextGateβ three-stage gate (credentials validation β policy fetch β enforcement) with hard DENY on missing policy -
TenantRetrievalPolicyschema for multi-tenant retrieval control - OTLP audit trail logging all access (tenant_id, policy_version, enforcement_result, timestamp, request_id)
-
-
Key Security Guarantees:
- Tenant Isolation: Per-tenant credential and policy boundaries with zero cross-tenant leakage
-
Deny-by-Default: Missing policy β hard DENY via
NullRetrievalBackend(deterministic exception, never silent fallback) - Policy Expiration: Expired policies automatically denied without grace period
- Audit Completeness: All retrieval access logged via OTLP with complete context trail
- Test Coverage: 13+ security-focused tests covering tenant isolation, policy expiration, audit trail completeness
-
Acceptance Criteria:
- 0 cross-tenant data leaks verified via isolation test suite
- Deny-by-default semantics enforced on all control paths (no silent fallbacks)
- OTLP audit trail logs all 6 required fields per retrieval access
- Policy expiration enforcement validated via time-mocking tests
-
CI Gate:
.github/workflows/gate-pr-rag-security.ymlvalidates security guardrail compliance on security/RAG changes
-
Specification Document:
- [~] Phase 2 Cryptography & Key Management Hardening (Target: Q4 2026)
- Harden policy evaluation consistency across RBAC/ABAC/RLS enforcement paths (Target: Q4 2026)
- Expand key-rotation and key-provider failover validation under degraded external dependencies (Target: Q4 2026)
- Strengthen audit-evidence integrity and export reliability under high event volume (Target: Q4 2026)
- Advance crypto-provider hardening and migration readiness across classical and PQ modes (Target: Q1 2027)
- Expand detection and response coverage for auth abuse and injection-style attack patterns (Target: Q1 2027)
- Improve zero-trust policy diagnostics and deny-by-default explainability for operators (Target: Q1 2027)
- Freeze security module API contract β transport/TLS, key lifecycle, policy evaluation, audit, threat detection, error taxonomy (include/security/security_api_contract.h) (Target: Q3 2026)
- Define explicit SecurityErrorCode taxonomy (12+ codes: CERT_VALIDATION_FAILED, KEY_NOT_FOUND, KEY_ROTATION_IN_PROGRESS, POLICY_DENY, AUDIT_WRITE_FAILED, THREAT_DETECTED, ACCESS_DENIED, ENCRYPTION_FAILED, β¦) (Target: Q3 2026)
- Re-validate authentication/session/control paths for fail-closed behavior under edge cases (Target: Q3 2026)
- Strengthen token/session invalidation and revocation guarantees (Target: Q3 2026)
- [~] Expand key lifecycle validation (create/rotate/revoke/recover) across providers (Target: Q4 2026)
- Key-lifecycle tests K-LIFE-01..K-LIFE-04 (2026-08-07)
- Key-provider benchmarks K-ROT-01..K-ROT-04 (2026-08-07)
- Vault provider production-config and fail-closed validation (
tests/security/test_security_wavec_production_validation_focused.cpp) (2026-08-17) - HSM provider production-mode/stub-guard validation (
tests/security/test_security_wavec_production_validation_focused.cpp) (2026-08-17) - PKI-oriented fail-closed dependency validation (matrix coverage) (
tests/security/test_security_wavec_production_validation_focused.cpp) (2026-08-17)
- [~] Tighten crypto error-path handling and secure-default enforcement (Target: Q4 2026)
- Crypto error-path tests K-ERR-01..K-ERR-04 (2026-08-07)
- Key-provider failover tests K-PROV-01..K-PROV-04 (2026-08-07)
- Production failure-injection matrix validation (
tests/security/test_security_wavec_production_validation_focused.cpp) (2026-08-17) - Fix
TimestampAuthority::generateNonce()β replaced sequential-byte counter withRAND_bytes(cryptographic security gap, wave1 gap-closure 2026-08-31) - Add fail-closed guard to
hsm_provider_pkcs11.cppgetCertificate()fallback β stub PEM now requiresTHEMIS_ALLOW_HSM_STUB=1opt-in (wave1 gap-closure 2026-08-31) - Add STUB/SIMULATION NOTE template to
HSMKeyProviderAdapterinjectable DEK bridge (#47/#48) (wave1 gap-closure 2026-08-31) - Add STUB/SIMULATION NOTE template + per-call WARN to
hsm_provider_pkcs11.cppfallback sign path (wave1 gap-closure 2026-08-31) - Add STUB/SIMULATION NOTE template + WARN to
HSMPKIClient::getCertSerial()silent stub (wave1 gap-closure 2026-08-31)
- [I] PKCS#11 real HSM signing integration (
hsm_provider_pkcs11.cppβ stub sign path active when real_ready==false) (Target: Wave 2 / Q1 2027) - [I] RFC 3161 / eIDAS qualified timestamp implementation (
timestamp_authority_openssl.cppβ requires -DTHEMIS_USE_OPENSSL_TSA=ON + libcurl) (Target: Wave 2 / Q1 2027)
- [~] Expand RLS/masking/policy-enforcement regression coverage under mixed query workloads (Target: Q4 2026)
- RLS tests P-RLS-01..P-RLS-04 (2026-08-07)
- Query masking tests P-MASK-01..P-MASK-02 (2026-08-07)
- Policy benchmarks P-MRG-01..P-MRG-05 (2026-08-07)
- Real query workload testing (
tests/security/test_security_wavec_production_validation_focused.cpp) (2026-08-17) - Mixed RLS+ABAC scenarios (
tests/security/test_security_wavec_production_validation_focused.cpp) (2026-08-17)
- [~] Validate deny-by-default and policy-merge semantics under conflicting rule sets (Target: Q4 2026)
- Policy-merge tests P-MRG-01..P-MRG-04 (2026-08-07)
- Deny-by-default tests P-DENY-01..P-DENY-04 (2026-08-07)
- Conflict resolution edge case validation (
tests/security/test_security_wavec_production_validation_focused.cpp) (2026-08-17) - Concurrent policy update atomicity (
tests/security/test_security_wavec_production_validation_focused.cpp) (2026-08-17)
- Contract-hardening focused tests SEC-01..SEC-16 covering TLS/cert, key management, policy evaluation, and audit invariants (tests/security/test_security_contract_hardening_focused.cpp) (Target: Q1 2027)
- Re-baseline detection latency and false-positive controls for security signal paths (Target: Q1 2027)
- Ensure tamper-evidence and audit export behavior remains bounded and reliable at scale (Target: Q1 2027)
- Lock benchmark-backed release gates for security hot paths: SRG-01..SRG-06 in benchmarks/security/bench_security_release_gates.cpp (policy eval p99β€1ms, JWT p99β€500Β΅s, key lookup p99β€100Β΅s, audit write p99β€500Β΅s, RBAC p99β€200Β΅s, cert validation p99β€2ms) (Target: Q3 2026)
- Keep security docs source-aligned with explicit sourcecode verification evidence per cycle (Target: ongoing)
- Keep completed roadmap items exclusively in changelog (Target: ongoing)
- Tracking in progress
- Contract header frozen: include/security/security_api_contract.h (Phase 1)
- Contract-hardening tests: tests/security/test_security_contract_hardening_focused.cpp (Phase 4, SEC-01..SEC-16)
- Release-gate benchmarks: benchmarks/security/bench_security_release_gates.cpp (Phase 5, SRG-01..SRG-06)
- [~] Phase 2 crypto hardening: key-lifecycle + error-path + failover tests + benchmarks (K-LIFE, K-ERR, K-PROV, K-ROT gates) (Target: Q4 2026)
- Tests: test_security_phase2_crypto_hardening_focused.cpp (2026-08-07)
- Benchmarks: bench_security_phase2_crypto_gates.cpp (2026-08-07)
- Production integration validation (
tests/security/test_security_wavec_production_validation_focused.cpp) (2026-08-17)
- [~] Phase 3 policy hardening: RLS + policy-merge + deny-by-default + masking tests + benchmarks (P-RLS, P-MRG, P-DENY, P-MASK gates) (Target: Q4 2026)
- Tests: test_security_phase3_policy_hardening_focused.cpp (2026-08-07)
- Benchmarks: bench_security_phase3_policy_gates.cpp (2026-08-07)
- Production integration validation (
tests/security/test_security_wavec_production_validation_focused.cpp) (2026-08-17)
- [~] Phase 4a audit export hardening: high-volume stress tests + reliability gates + benchmarks (EXPORT-STRESS-01..10, E-ATOMIC, E-IDEM, E-LATENCY gates) (Target: Q4 2026)
- Tests: test_audit_export_stress_focused.cpp with 10 focused stress cases (2026-08-18)
- Benchmarks: bench_audit_export_gates.cpp with export rate/latency/recovery gates (2026-08-18)
- Metrics implementation: ExportMetrics + reliability gate methods (2026-08-18)
- Gate baseline: benchmarks/wave9/audit_export_gate_manifest.json (2026-08-18)
- Benchmark CMakeLists registered: benchmarks/security/CMakeLists.txt
- Nachweise: security focused tests, auth/policy regressions, crypto/key-provider tests, security benchmarks, audit export stress/gates (Phase 1-4a)
- Hinweis: Abgeschlossene Arbeit wird ausschliesslich in CHANGELOG dokumentiert.
- Some high-assurance runtime envelopes still require broader benchmark and regression evidence.
- Certain external dependency failure combinations need additional hardening validation.
- Policy explainability and operator-facing diagnostics continue to be refined.
- Security public APIs in active major lines remain additive-first.
- Any behavior change requiring migration must be versioned and documented in changelog/migration notes.
This module is scoped to Wave C β Security Production Validation in the program-level wave model.
Wave C begins only after Wave B exit criteria are met.
See ../../ROADMAP.md for the full Wave A β B β C β D gate model and exit criteria.
- Security: complete Vault/HSM/PKI integration validation, provider failover, real RLS/query workloads, concurrent policy updates, and policy-conflict edge cases (
tests/security/test_security_wavec_production_validation_focused.cpp) (Target: Q4 2026, done: 2026-08-17)
- Wave B gate is closed: retrieval chain baselines stable, ACM observability gates closed, hardware baselines confirmed (Target: Q4 2026)
- Production-style security integration evidence complete (
tests/security/test_security_wavec_production_validation_focused.cpp) (Target: Q4 2026, done: 2026-08-17) - Integrity and reliability verified under sustained load (
tests/security/test_security_wavec_production_validation_focused.cpp) (Target: Q4 2026, done: 2026-08-17) - Policy gates consistently block boundary/license/hash/SBOM regressions (
tests/security/test_security_wavec_production_validation_focused.cpp) (Target: Q4 2026, done: 2026-08-17)
- Wave D operability hardening depends on stable Wave C security controls.
ThemisDB 1.9.0-beta Β· Home Β· Module-Index Β· GitHub Β· Issues
ThemisDB 1.9.0-beta Β· Home Β· Wiki-Index Β· Module-Index Β· FAQ Β· Quick-Reference Β· GitHub Β· Issues Β· Discussions Β· License
- Home
- Hero Articles
- All Wiki Pages
- FAQ
- Edition Comparison
- Repository README
- Changelog
- Roadmap
- Versioning
- Integration Mapping
- Overview
- Readme
- Appendix D Feature Status
- Appendix E Incident Runbooks
- Appendix F AQL Cheatsheet
- Appendix G Configuration
- Appendix H Glossary
- Appendix I Troubleshooting
- Appendix Literatur
- Chapter 00 Genesis
- Chapter 01 Introduction
- Chapter 02 Architecture
- Chapter 03 Multimodel
- Chapter 04 Installation
- Chapter 05 Relational
- Chapter 06 Graph
- Chapter 07 Document
- Chapter 08 Storage Layer
- Chapter 08 Vector
- Chapter 09 Timeseries
- Chapter 10 Enterprise
- Chapter 11 Realtime
- Chapter 12 Computervision
- Chapter 13 Fulltext
- Chapter 14 Geospatial
- Chapter 15 Analytics
- Chapter 16 Ml
- Chapter 16 Sharding
- Chapter 17 LLM Integration
- Chapter 17 Scaling
- Chapter 18 HA
- Chapter 18 Ml
- Chapter 19 Monitoring
- Chapter 19 Monitoring Observability
- Chapter 20 Backup
- Chapter 20 Performance
- Chapter 21 Auth
- Chapter 21 Performance
- Chapter 22 Clients
- Chapter 22 Encryption
- Chapter 23 Testing Qa
- Chapter 24 Ai Ethics
- Chapter 25 Devops Infrastructure
- Chapter 26 Migration Legacy
- Chapter 27 Troubleshooting
- Chapter 28 AQL Reference
- Chapter 29 Analytics Process Mining
- Chapter 30 Deployment Operations
- Chapter 31 API Protocols
- Chapter 32 API Design Rest Principles
- Chapter 32 AQL Oop Implementation
- Chapter 33 Best Practices
- Chapter 34 Query Optimization
- Chapter 35 Data Modeling Patterns
- Chapter 36 Security Hardening
- Chapter 37 Ecosystem Integration
- Chapter 38 Observability Sre
- Chapter 39 Performance Tuning Cookbook
- Chapter 40 Data Governance Compliance
- Chapter 41 Hands On Labs
- Chapter 42 Docs Assistant Usage
- Chapter MVCC Hlc
- Cover
- Cover Book
- Index
- Preface
- Test Links Example
- Batch Operations
- Best Practices
- CRUD Tutorial
- Custom Document Ingestion
- Getting Started Tutorial
- Interactive Examples
- Schema Design
- Video Tutorials
- AQL Reference
- AQL Examples
- AQL Overview
- AQL Feature Roadmap
- AQL Geospatial Guide
- AQL LLM Migration Guide
- AQL API
- AQL Grammar (EBNF)
- AQL Root Overview
- AQL Examples (root)
- API Reference
- API Module README
- OpenAPI Overview
- Client SDK Overview
- SDK Overview
- Operations
- Operations Overview
- Operations Runbook
- Operations Handbook
- ThemisCtl Admin Guide
- Pipeline E2E SOPs
- Docker Overview
- Docker Hub README
- Helm Overview
- Packaging Overview
- Operator Overview
- Security Policy
- Production Hardening Checklist
- Security Hardening Guide
- Encryption Key Management
- Access Control Framework
- Zero Trust Policy
- API Authentication & Authorization
- HSM Production Setup
- PKCS11 Integration
- DSGVO / SOC2 Checklist
- Access Model Runbooks
- Access Model Dashboard
- Maturity Automation Runbook
- Access Review Automation
- Access Model Dashboard
- Access Model Runbooks
- Rights Revocation
- Dr Checklists
- Dr Testing
- Incident Response Playbook
- Incident Response Testing
- GPU Oom Recovery
- Grammar Debugging
- Metrics Scrape Troubleshooting
- Model Swap Procedure
- Quota Tuning
- Subagent Deployment
- Logging Configuration
- Content Model
- Crypto & Keys
- Feature Flags Reference
- Modular Architecture Roadmap
- Modularization Guide
- Module Architecture Index
- PostgreSQL Wire Protocol
- Query Scheduling
- Raft Consensus Design
- Resource Pooling
- Source Directory Guide
- Unified Access Model
- E1 001 Layered Retrieval Design
- E1 002 Ann Abstraction Strategy
- E1 003 Tensor Summary Types
- E1 004 Lora Package Distinction
- E1 005 Model Switch Compatibility
- E1 006 Federated Tensor Summaries
- E2 001 Evaluation Framework Design
- E2 002 Hardware Profile Strategy
- E2 003 Query Planner Routing Model
- E2 004 Approximation Governance Rules
- E2 005 Cross Layer Fallback Confidence Policy
- E3 001 Distributed Tensor Design
- E3 002 Manifest Coordination Strategy
- E3 003 Recovery And Erasure Choice
- E3 004 Tensor Fabric Infrastructure
- Contributing
- Contributing (root)
- Code of Conduct
- Support
- Maintainers
- CTest Guide
- Build Quick Reference
- Developer Wiki Index
- Build / Test / CI
- Module Index
- Branching Strategy
- Release Strategy
- CI Policy Gates Wave C
- Disabled Stub Policy
- Docs PR Policy
- GA Promotion Sign Off
- Github Milestones Setup
- Governance Policies Phase1
- GPU Self Hosted Runner Requirements
- Hardening Phase 1 2 Summary 2026 09 23
- Maturity Claim Verification Checklist
- Maturity Evidence Registry
- Merge Gate Bot Config
- Merge Gate Status Live
- Phase 1 Closure Report
- Phase 1 Infrastructure Deployment
- Phase 1 Infrastructure Deployment Complete
- Phase 3 Baseline Capture
- Phase 3 Refinement Spec
- Phase 4 Sign Off And Closure
- Phase Closure Policy
- Phase Dependency Graph
- Phase3 Enforcement Runbook
- Plugin Submodule Rollback
- PR Version Targeting
- PR Version Targeting Backfill
- Production Ready 2026 Delivery Plan
- Publish Workflow Audit 2026 09 23
- Query Module Status
- Readme
- Release Governance
- Release Promotion Gate Policy
- Release Validation Checklist
- Root Hygiene Policy
- SBOM Approved Versions
- Security Compliance Audit Report 2026 08 10
- Security Module 5671 Evidence Summary
- Sharding P6 Residual Risk Acceptance
- Sourcecode Compliance Governance
- Src Module Documentation Compliance 2026 09 20
- Updates Development Status Sign Off
- Wave C Implementation Complete
- Wave C Implementation Plan
- Wave C Ml Exit Gate Sign Off
- Wave C Policy Gate Evidence
- Wiki Publish Tracking Guide
- Blob Storage
- Cuda
- Ethics Ai
- Exporters
- Huggingface
- Image Analysis
- Importers
- RPC
- Scraper
- Themisdb Ai Watermark Detector
- User Storage Encrypted
- Chimera Architecture
- Chimera Future
- Chimera Readme
- Chimera Roadmap
- Covina Fastapi Ingestion Architecture
- Covina Fastapi Ingestion Future
- Covina Fastapi Ingestion Roadmap
- Vcc Base Architecture
- Vcc Base Future
- Vcc Base Roadmap
- Vcc Clara Ingestion Architecture
- Vcc Clara Ingestion Future
- Vcc Clara Ingestion Roadmap
- Vcc Veritas Architecture
- Vcc Veritas Future
- Vcc Veritas Roadmap
- 01 Hello World
- 02 Todo App
- 03 Contact Manager
- 04 Inventory System
- 05 Time Series Monitor
- 06 Graph Social Network
- 07 Vector Search Documents
- 08 Dms Erp System
- 09 Iot Sensor Network
- 10 Drone Image Analysis
- 11 Blog Wiki
- 12 Expense Tracker
- 13 Recipe Manager
- 14 Ecommerce Catalog
- 15 Event Management
- 16 Kanban Board
- 17 Crm
- 18 Realtime Chat
- 19 Recommendation Engine
- 20 Smart Home
- 21 Coding Platform
- 22 AQL Diagram Tool
- 23 Traveling Salesman
- 24 Moral Philosophy Debates
- API Versioning
- Distributed Sharding
- Feedback Plugins
- Geo
- Gnn
- Image Analysis
- Legal Lora Training
- LLM
- Lora Sync
- Migration
- Nlp
- Performance
- Railway
- Replication
- Rope Visualization
- Sample Product Config
- Security
- Client SDK Overview
- Quickstart
- Sdk Enhancements
- Sdk Implementation Summary
- Test Suite Readme
- Go
- Java
- Javascript
- Php
- Python
- Ruby
- Rust
- Typescript
- 01 Grundlegende Operationen
- 02 AQL Queries
- 03 Graph Daten
- 04 Multimodell Anwendung
- 01 Quickstart Guide
- 02 AQL Referenz Kurzuebersicht
- 03 Datenmodellierung Guide
- 04 Uebungsaufgaben
- 05 Best Practices Guide
- Training Documents
- Training Overview
- 01 Einfuehrung Und Uebersicht
- 02 Datenmodelle Und Architektur
- 03 AQL Abfragesprache
- 04 Installation Und Setup
- 05 Anwendungsbeispiele
- Training Presentations
- Dependencies Readme
- Processmonitor Readme
- Themis.admintools.shared Readme
- Themis.aqlquerybuilder Readme
- Themis.aqlquerybuilder Roadmap
- Themis.auditlogviewer Readme
- Themis.auditlogviewer Roadmap
- Themis.classificationdashboard Readme
- Themis.classificationdashboard Roadmap
- Themis.compliancereports Readme
- Themis.compliancereports Roadmap
- Themis.gisviewer.controlpanel Readme
- Themis.gisviewer.controlpanel Roadmap
- Themis.impactanalysisviewer Readme
- Themis.impactanalysisviewer Roadmap
- Themis.ingestiontool Readme
- Themis.ingestiontool Roadmap
- Themis.keyrotationdashboard Readme
- Themis.keyrotationdashboard Roadmap
- Themis.piimanager Readme
- Themis.piimanager Roadmap
- Themis.retentionmanager Readme
- Themis.retentionmanager Roadmap
- Themis.sagaverifier Readme
- Themis.sagaverifier Roadmap
- Themis.usbadmintool Readme
- Themis.usbadmintool Roadmap
- Architecture Generator Readme
- CI Readme
- CI Roadmap
- Compiler Diagnostics Readme
- Compiler Diagnostics Roadmap
- Completion Readme
- Copilot Ollama Router Readme
- Copilot Ollama Router Roadmap
- Gnn Readme
- Gnn Roadmap
- Rope Visualizer Readme
- Rope Visualizer Roadmap
- Tco Calculator Readme
- Tco Calculator Roadmap
- Tests Readme
- Tests Roadmap
- Themis Config Wx Readme
- Themis Docs Builder Readme
- Wikipedia Ingestion Readme
- Ai Metadata And Provenance
- Build / Test / CI
- Governance And Roadmap
- Developer Wiki Index
- Module Direct Doxygen Check
- Module Doxygen Baseline Summary
- Module Doxygen Batch
- Module Doxygen Coverage Summary
- Module Doxygen Smoke Summary
- Modules And Apis
- Retrieval Direct Doxygen Check
- Soll Ist Gap Summary
- Wiki Delta Report