Skip to content
Proud to collaborate with Microsoft for Startups

identity.key.create ​

Generate a signing keypair for the current organization

Generate a signing keypair for the current organization.

kind=user: private_key returned ONCE on the start response (sync auto-advance). kind=service: never returned.

HTTP start still redacts the field name private_key. The same hex is copied onto temporary_view_token so the existing one-time serializer channel can return nsec to the console.

Overview ​

PropertyValue
Workflow typeLinear
LibraryApp-identity
Version1.0

Input Schema ​

FieldTypeRequiredDefaultDescription
actorstringNo——
organization_uuiduuidNo——
labelstringYes——
kindstringNouser—
algorithmstringNosecp256k1—

Output Schema ​

FieldTypeRequiredDefaultDescription
key_uuidstringYes——
labelstringYes——
kindstringYes——
algorithmstringYes——
public_keystringYes——
public_key_fingerprintstringYes——
private_keystringNo——
temporary_view_tokenstringNo——
created_atstringYes——
failure_reasonstringNo——
failure_typestringNo——
failed_actionstringNo——
failed_at_statestringNo——
failed_stepstringNo——
failed_layerstringNo——
errorstringNo——
error_typestringNo——

States ​

StateInitialTerminalSuccessAuto-advanceDescription
initiatedYesNo—generate—
generatingNoNo—persist—
persistingNoNo—complete—
completedNoYesYes——
failedNoYesNo——

State Diagram ​

Transitions ​

FromActionToDescription
initiatedgenerategenerating—
generatingpersistpersisting—
persistingcompletecompleted—
* (any state)failfailed—

API Usage ​

bash
POST /api/workflows/start
Content-Type: application/json

{
  "workflow_type": "identity.key.create",
  "initial_data": {
    "label": "value"
  }
}