Released docs. You are viewing the documentation published with v0.34.0. Development docs are available at Latest.
evidencectl keygen command reference
Generate Evidence Gateway deployment key material as owner-only files.
Contract status
Section titled “Contract status”This page is generated from the public Clap command tree for Registry Stack source version 0.34.0 and catalog SHA-256 521175a69262e60df96745886392348e5bb8d82e63cdd24bdf4baa80d46e5ff4. Hidden implementation commands are omitted.
evidencectl keygen [OPTIONS] <COMMAND>Commands
Section titled “Commands”| Command | Description |
|---|---|
signing | P-256 ES256 signing keypair as private and public JWK files |
secret | One random raw secret file, 32 bytes (audit or subject-binding HMAC) |
token | One random bearer token file, printable and header-safe |
holder | P-256 ES256 holder keypair for SD-JWT VC confirmation binding |
client-assertion | Keypair a source’s clientAssertionKeyRef points at, for a token endpoint that authenticates the client by signed assertion |
Options
Section titled “Options”| Option | Always required | Default | Values | Environment | Description |
|---|---|---|---|---|---|
--format <output_format> | No | human | human, json | n/a | Select human-readable or machine-readable output |
-h, --help | No | n/a | n/a | n/a | Print help |
Generation contract
Section titled “Generation contract”Run npm run generate from docs/site after changing a public command, argument, option, default, environment binding, or help description.