Skip to content
Registry StackDocsv0.38.0

evidencectl keygen secret command reference

View as Markdown

One random raw secret file, 32 bytes (audit or subject-binding HMAC).

This page is generated from the public Clap command tree for Registry Stack source version 0.38.0 and catalog SHA-256 cd13c658f65af295f9df3c6db86dc045ac06e9e040afc1f5f5b27c3184ab653d. Hidden implementation commands are omitted.

One random raw secret file, 32 bytes (audit or subject-binding HMAC). This is HMAC key material, not a credential a source will accept: the bytes are arbitrary and an HTTP header value rejects most of them. Use keygen token for a bearer token.

evidencectl keygen secret [OPTIONS] --output <OUTPUT>
OptionAlways requiredDefaultValuesEnvironmentDescription
--output <OUTPUT>Yesn/an/an/aOutput file for the raw secret (written 0600)
--format <output_format>Nohumanhuman, json, junitn/aSelect human-readable or machine-readable output. junit is accepted only by fixture runs (test and fixtures run)
-h, --helpNon/an/an/aPrint help (see a summary with ‘-h’)

Run npm run generate from docs/site after changing a public command, argument, option, default, environment binding, or help description.