Versioned archive. You are viewing v0.38.0. For the latest released guidance, use Latest release. Report archive issues on GitHub.
bregctl field-encryption command reference
Maintain field-encryption key material.
Contract status
Section titled “Contract status”This page is generated from the public Clap command tree for Registry Stack source version 0.38.0 and catalog SHA-256 cd13c658f65af295f9df3c6db86dc045ac06e9e040afc1f5f5b27c3184ab653d. Hidden implementation commands are omitted.
bregctl field-encryption [OPTIONS] <COMMAND>Commands
Section titled “Commands”| Command | Description |
|---|---|
keygen | Write one fresh base64 data key for the local-file provider. The key never reaches standard output and an existing file is never overwritten |
preflight | Report what one reviewed backfill apply would do, before running it: value-free counts per covered field, the descriptor’s explicit history choice, and the record names a unique blind index would refuse |
erase-history | Erase the retained plaintext history of flips that declared erase-and-rebaseline, then restore snapshot coverage with one rebaseline. Runs only after the flip’s package is active |
Options
Section titled “Options”| Option | Always required | Default | Values | Environment | Description |
|---|---|---|---|---|---|
--format <FORMAT> | No | human | human, json | n/a | Emit the selected command’s report in this format |
-h, --help | No | n/a | n/a | n/a | Print help |
Generation contract
Section titled “Generation contract”Run npm run generate from docs/site after changing a public command, argument, option, default, environment binding, or help description.