[{"data":1,"prerenderedAt":500},["ShallowReactive",2],{"navigation":3,"/getting-started/key-concepts":258,"/getting-started/key-concepts-surround":495},[4,22,63,85,115,131,219,245],{"title":5,"path":6,"stem":7,"children":8,"page":21},"Getting Started","/getting-started","1.getting-started",[9,13,17],{"title":10,"path":11,"stem":12},"Introduction","/getting-started/introduction","1.getting-started/1.introduction",{"title":14,"path":15,"stem":16},"Quick Start","/getting-started/quick-start","1.getting-started/2.quick-start",{"title":18,"path":19,"stem":20},"Key Concepts","/getting-started/key-concepts","1.getting-started/3.key-concepts",false,{"title":23,"path":24,"stem":25,"children":26,"page":21},"Guides","/guides","2.guides",[27,31,35,39,43,47,51,55,59],{"title":28,"path":29,"stem":30},"Quick Share Guide","/guides/quick-share","2.guides/1.quick-share",{"title":32,"path":33,"stem":34},"Slack Integration","/guides/slack-integration","2.guides/2.slack-integration",{"title":36,"path":37,"stem":38},"Enterprise Setup","/guides/enterprise-setup","2.guides/3.enterprise-setup",{"title":40,"path":41,"stem":42},"Creating a Share","/guides/creating-a-share","2.guides/4.creating-a-share",{"title":44,"path":45,"stem":46},"Zero-Knowledge Custody","/guides/zero-knowledge-custody","2.guides/5.zero-knowledge-custody",{"title":48,"path":49,"stem":50},"Secure Requests","/guides/secure-requests","2.guides/6.secure-requests",{"title":52,"path":53,"stem":54},"Receiving a Secure Request","/guides/receiving-a-secure-request","2.guides/7.receiving-a-secure-request",{"title":56,"path":57,"stem":58},"SecurePaste","/guides/securepaste","2.guides/8.securepaste",{"title":60,"path":61,"stem":62},"Notifications","/guides/notifications","2.guides/9.notifications",{"title":64,"icon":65,"path":66,"stem":67,"children":68,"page":21},"Account","i-lucide-user-cog","/account","3.account",[69,73,77,81],{"title":70,"path":71,"stem":72},"Signing In","/account/signing-in","3.account/1.signing-in",{"title":74,"path":75,"stem":76},"Plans and Share Allowance","/account/plans-and-share-allowance","3.account/2.plans-and-share-allowance",{"title":78,"path":79,"stem":80},"Billing and Subscription","/account/billing-and-subscription","3.account/3.billing-and-subscription",{"title":82,"path":83,"stem":84},"Plans and Limits","/account/plans-and-limits","3.account/4.plans-and-limits",{"title":86,"icon":87,"path":88,"stem":89,"children":90,"page":21},"Teams","i-lucide-users","/teams","4.teams",[91,95,99,103,107,111],{"title":92,"path":93,"stem":94},"Teams and Contexts","/teams/teams-and-contexts","4.teams/1.teams-and-contexts",{"title":96,"path":97,"stem":98},"Members, Roles and Seats","/teams/members-roles-and-seats","4.teams/2.members-roles-and-seats",{"title":100,"path":101,"stem":102},"Joining a Team","/teams/joining-a-team","4.teams/3.joining-a-team",{"title":104,"path":105,"stem":106},"Custom Branding","/teams/custom-branding","4.teams/4.custom-branding",{"title":108,"path":109,"stem":110},"Policy and Audit","/teams/policy-and-audit","4.teams/5.policy-and-audit",{"title":112,"path":113,"stem":114},"Zero-Knowledge for Teams","/teams/zero-knowledge-for-teams","4.teams/6.zero-knowledge-for-teams",{"title":116,"path":117,"stem":118,"children":119,"icon":130},"Help","/help","5.help/0.index",[120,122,126],{"title":121,"path":117,"stem":118},"Help and Support",{"title":123,"path":124,"stem":125},"Link Not Working","/help/link-not-working","5.help/1.link-not-working",{"title":127,"path":128,"stem":129},"Error Messages","/help/error-messages","5.help/2.error-messages","i-lucide-life-buoy",{"title":132,"path":133,"stem":134,"children":135},"API Reference","/api","6.api/0.index",[136,137,141,167,189,193,211,215],{"title":132,"path":133,"stem":134},{"title":138,"path":139,"stem":140},"Authentication","/api/authentication","6.api/1.authentication",{"title":142,"path":143,"stem":144,"children":145},"Shares","/api/shares","6.api/2.shares/0.index",[146,147,151,155,159,163],{"title":142,"path":143,"stem":144},{"title":148,"path":149,"stem":150},"Create a share","/api/shares/create","6.api/2.shares/1.create",{"title":152,"path":153,"stem":154},"List shares","/api/shares/list","6.api/2.shares/2.list",{"title":156,"path":157,"stem":158},"Retrieve a share","/api/shares/retrieve","6.api/2.shares/3.retrieve",{"title":160,"path":161,"stem":162},"Expire a share","/api/shares/delete","6.api/2.shares/4.delete",{"title":164,"path":165,"stem":166},"Client-side encryption","/api/shares/client-side-encryption","6.api/2.shares/5.client-side-encryption",{"title":168,"path":169,"stem":170,"children":171},"Secure requests","/api/requests","6.api/3.requests/0.index",[172,173,177,181,185],{"title":168,"path":169,"stem":170},{"title":174,"path":175,"stem":176},"Create a request","/api/requests/create","6.api/3.requests/1.create",{"title":178,"path":179,"stem":180},"List and retrieve requests","/api/requests/list","6.api/3.requests/2.list",{"title":182,"path":183,"stem":184},"Read submissions","/api/requests/submissions","6.api/3.requests/3.submissions",{"title":186,"path":187,"stem":188},"Expire or delete a request","/api/requests/delete","6.api/3.requests/4.delete",{"title":190,"path":191,"stem":192},"Stats","/api/stats","6.api/4.stats",{"title":194,"path":195,"stem":196,"children":197},"Webhooks","/api/webhooks","6.api/5.webhooks/0.index",[198,199,203,207],{"title":194,"path":195,"stem":196},{"title":200,"path":201,"stem":202},"Event reference","/api/webhooks/events","6.api/5.webhooks/1.events",{"title":204,"path":205,"stem":206},"Verifying signatures","/api/webhooks/verifying-signatures","6.api/5.webhooks/2.verifying-signatures",{"title":208,"path":209,"stem":210},"Delivery and retries","/api/webhooks/delivery-and-retries","6.api/5.webhooks/3.delivery-and-retries",{"title":212,"path":213,"stem":214},"MCP server","/api/mcp","6.api/6.mcp",{"title":216,"path":217,"stem":218},"Errors and Rate Limits","/api/errors-and-limits","6.api/7.errors-and-limits",{"title":220,"path":221,"stem":222,"children":223},"SDKs","/sdks","7.sdks/0.index",[224,225,229,233,237,241],{"title":220,"path":221,"stem":222},{"title":226,"path":227,"stem":228},"Node SDK","/sdks/node","7.sdks/1.node",{"title":230,"path":231,"stem":232},"Python SDK","/sdks/python","7.sdks/2.python",{"title":234,"path":235,"stem":236},"Go SDK","/sdks/go","7.sdks/3.go",{"title":238,"path":239,"stem":240},"Rust SDK","/sdks/rust","7.sdks/4.rust",{"title":242,"path":243,"stem":244},"Conformance vectors","/sdks/conformance-vectors","7.sdks/5.conformance-vectors",{"title":246,"path":247,"stem":248,"children":249,"page":21},"Security","/security","8.security",[250,254],{"title":251,"path":252,"stem":253},"Encryption","/security/encryption","8.security/1.encryption",{"title":255,"path":256,"stem":257},"Compliance","/security/compliance","8.security/2.compliance",{"id":259,"title":18,"api":260,"body":261,"description":489,"extension":490,"links":260,"meta":491,"navigation":492,"path":19,"seo":493,"stem":20,"__hash__":494},"docs/1.getting-started/3.key-concepts.md",null,{"type":262,"value":263,"toc":479},"minimark",[264,268,272,280,304,307,310,337,349,353,356,424,427,434,438,441,455,462,466,473,476],[265,266,267],"p",{},"Understanding these concepts will help you get the most out of CredenShare.",[269,270,142],"h2",{"id":271},"shares",[265,273,274,275,279],{},"A ",[276,277,278],"strong",{},"share"," is an encrypted credential stored temporarily on CredenShare's servers. Each share has:",[281,282,283,290,297],"ul",{},[284,285,274,286,289],"li",{},[276,287,288],{},"unique URL"," that carries the key needed to decrypt it",[284,291,292,293,296],{},"An ",[276,294,295],{},"expiration time"," after which the credential is permanently deleted",[284,298,299,300,303],{},"An optional ",[276,301,302],{},"view limit"," that caps how many times the credential can be accessed",[269,305,251],{"id":306},"encryption",[265,308,309],{},"Where the encryption happens depends on where the share was created:",[281,311,312,327,334],{},[284,313,314,315,318,319,322,323,326],{},"Credentials shared from the ",[276,316,317],{},"web",", the ",[276,320,321],{},"REST API"," or an ",[276,324,325],{},"SDK"," are encrypted in the client with AES-256-GCM. The decryption key never reaches us, so we store ciphertext we cannot read",[284,328,329,330,333],{},"Credentials created through the ",[276,331,332],{},"Slack app"," are encrypted on our servers with AES-256 envelope encryption, using a customer-managed key in AWS KMS",[284,335,336],{},"All traffic is TLS",[338,339,342],"callout",{"color":340,"icon":341},"warning","i-lucide-alert-triangle",[265,343,344,345,348],{},"For a client-encrypted share the link ",[276,346,347],{},"is"," the key: it carries the material that decrypts the credential. That is why we cannot read the credential — and why anyone who sees the link can. Treat the link as the secret, and add password protection when the link alone should not be enough.",[269,350,352],{"id":351},"expiration","Expiration",[265,354,355],{},"Every share has an expiration. The presets are:",[357,358,359,372],"table",{},[360,361,362],"thead",{},[363,364,365,369],"tr",{},[366,367,368],"th",{},"Duration",[366,370,371],{},"Use Case",[373,374,375,384,392,400,408,416],"tbody",{},[363,376,377,381],{},[378,379,380],"td",{},"1 hour",[378,382,383],{},"Immediate transfers, short-lived access",[363,385,386,389],{},[378,387,388],{},"24 hours",[378,390,391],{},"Default for shares created from the homepage",[363,393,394,397],{},[378,395,396],{},"3 days",[378,398,399],{},"Default in the app",[363,401,402,405],{},[378,403,404],{},"7 days",[378,406,407],{},"Longer-term credential handoff",[363,409,410,413],{},[378,411,412],{},"14 days",[378,414,415],{},"Extended handoff",[363,417,418,421],{},[378,419,420],{},"30 days",[378,422,423],{},"Extended access for projects",[265,425,426],{},"The presets are shortcuts. In the app you can set any value from 1 hour up to 3 months — hours up to 24, days up to 31, or months up to 3.",[265,428,429,430,433],{},"After expiration, the credential is ",[276,431,432],{},"permanently and irrecoverably deleted",".",[269,435,437],{"id":436},"view-limits","View Limits",[265,439,440],{},"View limits control how many times a credential can be accessed:",[281,442,443,449],{},[284,444,445,448],{},[276,446,447],{},"Unlimited"," (default, all plans) — no cap on views; the share ends at its expiration",[284,450,451,454],{},[276,452,453],{},"Limited"," — set a view count; the credential is destroyed once it is used up",[265,456,457,458,461],{},"Shares created from the homepage widget are ",[276,459,460],{},"always single-view"," — the first open destroys them, and this cannot be changed. To choose a different view limit, create the share from the app.",[269,463,465],{"id":464},"access-trail","Access Trail",[265,467,468,469,472],{},"Each share carries an ",[276,470,471],{},"access trail",": every access attempt with its timestamp, IP address, platform, user agent, and whether a password attempt failed. It is exportable as CSV or JSON.",[265,474,475],{},"Creation and expiry times are shown in your Shares and Expired Shares lists; they are not part of the access trail. There is no log of administrative actions available to customers.",[265,477,478],{},"How far back you can read the trail depends on your plan: Solo 3 days, Basic 7, Plus 30, Business 90, Enterprise 180. Free accounts have no retention window.",{"title":480,"searchDepth":481,"depth":482,"links":483},"",1,2,[484,485,486,487,488],{"id":271,"depth":482,"text":142},{"id":306,"depth":482,"text":251},{"id":351,"depth":482,"text":352},{"id":436,"depth":482,"text":437},{"id":464,"depth":482,"text":465},"Core concepts behind CredenShare's secure credential sharing.","md",{},true,{"title":18,"description":489},"Etpw1XlhYU39PMqtAA5HT7pdZNDtAc8Jyt_FS-f4rdI",[496,498],{"title":14,"path":15,"stem":16,"description":497,"children":-1},"Share your first credential securely in under 2 minutes.",{"title":28,"path":29,"stem":30,"description":499,"children":-1},"Step-by-step guide to sharing credentials securely using CredenShare's Quick Share feature.",1788908846767]