Expand description
Named credential custody (ADR-192). Resolution never exposes material to packs.
Structs§
- Credential
Config - Closed named references. Material is resolved by providers and never stored in config.
- Credential
Material - Owned secret bytes, zeroized on drop. Only runtime custody consumers can inspect them.
- Credential
Registry - Validated references plus provider implementations, without serialized secret values.
- Visibility
Receipt Config - Receipt key IDs and credential references; this table contains no key bytes.
- Visibility
Receipt KeyConfig
Enums§
- Credential
Cache Lifetime - Maximum lifetime for a provider’s cached resolution.
- Credential
Error - Errors contain credential references and fixed reasons, never provider material or causes.
- Credential
Kind
Traits§
- Credential
Provider - Downstream hosts register custody adapters here; env is the only shipped adapter.