The server stores wrapped (encrypted) copies of the organization encryption key — one per vault key. It never has access to the unwrapped encryption key or the vault keys themselves.
List vault keys
Query parameters
Response (200)
JSON
Code examples
Replace primary key
Request body
Exactly one of
current_auth_hash or recovery_auth_hash must be provided.
Request example (normal rotation)
JSON
Response (200)
JSON

