
How do you rotate a compromised signing key without breaking an append-only audit chain?
You rotate a compromised key by issuing a new key and recording the rotation as a signed event inside the same chain. Each key carries a validity window, so older entries stay verifiable under the key



