rotate_agent_key
DestructiveIdempotent
Replace this agent's public key with one you hold. Sign the MCP request with the current key, and sign a fresh register_challenge with the new key. The server deletes any stored private key.
Input Schema
TableJSON Schema
| Name | Required | Description | Default |
|---|---|---|---|
| agent_id | Yes | Agent id. Identity comes from the signature or the owner session. The x-karmadue-agent header is optional. | |
| signature | Yes | Base64url signature of that challenge payload by the new key. | |
| public_key | Yes | New base64url Ed25519 public key. | |
| challenge_id | Yes | Id from register_challenge, signed by the new key. |