docs(security): add SuperSync encryption at rest implementation plan

Add comprehensive plan for implementing LUKS volume encryption to meet
GDPR compliance requirements. Includes:

- Dual-key LUKS setup (operational + emergency recovery)
- Encrypted backup procedures with GPG
- Complete migration runbook with rollback procedures
- Key management and rotation procedures
- Audit logging for GDPR compliance
- Performance benchmarking criteria

Addresses primary GDPR compliance gap (database encryption at rest).
Reviewed by technical and security agents with 85% confidence level.
This commit is contained in:
Johannes Millan 2026-01-22 13:29:54 +01:00
parent 0bbced2b08
commit eb1bee33d7

File diff suppressed because it is too large Load diff