Definition packs
Flagship operational compliance workflows with evidence, checks, simulations, and audit reports — curated in-repo, not catalog padding.
Definition packs are full .kiket/ trees aimed at the operational compliance twin: normalized events become evidence; scanners produce explainable findings; remediation and reports close the loop.
The kiket2 repository ships four flagship packs under definitions/ (this monorepo, not quantity-driven marketplace tiles):
Vendor onboarding
DPA, security questionnaire, approvals, anchor-ready evidence.
Contract review
Legal → business → signature gate with contract evidence.
Privacy / DSAR
Identity proof, SLAs, response export before closure.
Security incident
Containment SLA, RCA, executive closure approval.
Each pack has a README (scenario, integrations, expected findings, one-session demo). See definitions/README in kiket2 for the pack index.
Evidence sources
To light up events → evidence in production, connect an evidence source. The reference path is GitHub webhooks:
GitHub webhook ingestion
Signatures, headers, and how merges hit the raw inbox and evidence pipeline.
Quality bar
A flagship pack should include:
- explicit evidence definitions tied to
normalized_event(or generated) sources, - checks and remediation IDs the scanner and UI can surface,
- at least one simulation block that proves a finding fires when evidence is missing,
- a report definition under
.kiket/reports/for audit exports.