Skip to content

Finish ZeroKMS vs HSM comparison + add comparison diagrams #32

Description

@coderdan

Follow-up to #31, which migrated the ZeroKMS comparison content from cipherstash-js-suite PR #364. Some of it landed as work-in-progress and needs finishing.

1. Fill in the WIP TODOs in zerokms-vs-hsm.mdx

content/stack/reference/comparisons/zerokms-vs-hsm.mdx still carries the original draft's TODO markers:

  • Benefits of HSM section — currently just TODO
  • Operational complexityTODO: key ceremonies, replication, uptime (eg. power), reliability etc
  • Compliance section — TODO: Talk about PCI/DSS etc
  • Physical access "ZeroKMS Advantage" callout — TODO: this could be worded better
  • Cryptographic custody / distributed trust link — TODO (may warrant its own "Trust Model" article)

2. Replace the diagram placeholder

The "Hybrid solutions" section of zerokms-vs-hsm.mdx originally used a D2 diagram, but this repo has no D2 renderer. It was converted to a {/* TODO */} comment with the original D2 source preserved inline:

  • zerokms-vs-hsm.mdx — "Hybrid solutions" client/SDK/HSM diagram

Needs a decision on how diagrams are rendered in this repo (image export, mermaid support, or a diagram component).

Note: the original ZeroKMS vs Cloud KMS page also had a placeholder diagram, but that page was merged into aws-kms.mdx and the placeholder diagram (which was sample content) was dropped.


Once both are addressed, cipherstash-js-suite PR #364 can be closed.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions