Skip to content
Registry StackDocsDevelopment (unreleased)

bregctl field-encryption command reference

View as Markdown

Maintain field-encryption key material.

This page is generated from the public Clap command tree for Registry Stack source version 0.34.0 and catalog SHA-256 c9eb944fbb64b3beca0250dc0dee945ea12d5c5f92ffeab2f7c21d9eeb888c6c. Hidden implementation commands are omitted.

bregctl field-encryption [OPTIONS] <COMMAND>
CommandDescription
keygenWrite one fresh base64 data key for the local-file provider. The key never reaches standard output and an existing file is never overwritten
preflightReport what one reviewed backfill apply would do, before running it: value-free counts per covered field, the descriptor’s explicit history choice, and the record names a unique blind index would refuse
erase-historyErase the retained plaintext history of flips that declared erase-and-rebaseline, then restore snapshot coverage with one rebaseline. Runs only after the flip’s package is active
OptionAlways requiredDefaultValuesEnvironmentDescription
--format <FORMAT>Nohumanhuman, jsonn/aEmit the selected command’s report in this format
-h, --helpNon/an/an/aPrint help

Run npm run generate from docs/site after changing a public command, argument, option, default, environment binding, or help description.