Kimss System Architecture

Kimss is the Model-Agnostic Enterprise Gateway — the control plane for identity, Hermis orchestration, write-only vault unwrap, and governed API calls. You hold the models; customer endpoints are the data plane.

System map

Clients hit the Invisible Proxy (dual-listener). Hermis enforces policy and unwraps vaulted credentials only in memory. Inference hops through APIM byo-proxy so GatewayLogs remain the immutable audit trail. Operational tables: /docs/enterprise_data_model.

Dual-layer security gateway

Scoped API key first, then iam.mcp_tool_grants SSO RBAC before an internal MCP tool runs. Marketing explainer: /zero-trust-ai-architecture.

Hermis orchestration loop

Physical pause on tool_call: kill switch, in-memory Key Vault unwrap, then tenant audit_log. Not Airflow.