Kimss System Architecture
Kimss is the Model-Agnostic Enterprise Gateway — the control plane for identity, Hermis orchestration, write-only vault unwrap, and governed API calls. You hold the models; customer endpoints are the data plane.
System map
Clients hit the Invisible Proxy (dual-listener). Hermis enforces policy and unwraps vaulted
credentials only in memory. Inference hops through APIM byo-proxy so GatewayLogs
remain the immutable audit trail. Operational tables:
/docs/enterprise_data_model.
Dual-layer security gateway
Scoped API key first, then iam.mcp_tool_grants SSO RBAC before an internal MCP tool runs.
Marketing explainer: /zero-trust-ai-architecture.
Hermis orchestration loop
Physical pause on tool_call: kill switch, in-memory Key Vault unwrap, then tenant
audit_log. Not Airflow.