yera.creds.schema

Pydantic schemas for the credential store.

Symbols

class CredentialGroupRecord — Persisted metadata for one named credential group.
class SecretRecord — Persisted opaque value and metadata for one secret.
class SecretStoreDocument — Version-two protected credential-store document.

CredentialGroupRecord

Inherits: BaseModel

Persisted metadata for one named credential group.

Attributes

id
type: str

Stable owner identity retained when the group is renamed.

authorised_roots
type: list[str]

Project roots authorized to use the group.

SecretRecord

Inherits: BaseModel

Persisted opaque value and metadata for one secret.

Attributes

identity
type: SecretIdentity

Durable identity of the secret.

value
type: bytes

Opaque serialized secret bytes.

created_at
type: AwareDatetime

Time at which the secret was first stored.

updated_at
type: AwareDatetime

Time at which the secret was last replaced.

SecretStoreDocument

Inherits: BaseModel

Version-two protected credential-store document.

Attributes

version
type: Literal[2]

Exact document-format version.

credential_groups
type: dict[str, CredentialGroupRecord]

Named groups containing only safe metadata.

secrets
type: list[SecretRecord]

Individually identified opaque secret records.