Expand description
mkit visibility set (WP-2.14, R-156): switch a repository between public
and private (SPEC-WRITE-GRANTS §9.1).
Two modes, chosen by --statement:
- Envelope (default): a signed auth v2 write of
SetRepoVisibilitywith the repository signing key, so it needstransport_auth = envelopeand a trusted remote, likemkit push. A grant never authorizes it. - Statement (
--statement): an owner-signedmkit-repo-visibility:v1statement, sent with no envelope and withX-Repository. It signs with any owner scheme, including a wallet or passkey by import.
Either way the server may answer unavailable + Retry-After while a
change to private takes effect everywhere; the command waits.