Payload class

Consumer requests that the maintainer release the cleartext secret material of a vault entry. The response carries the secret in a pluggable cipher envelope (see vault/_shared/0.1/sealed-envelope); the cleartext shape is vault/_shared/0.1/vault-secret#/$defs/VaultSecret. This is the fallback when proxy-login is not viable (vault/proxy-login:notProxyable) or when the consumer needs the raw secret for a flow the maintainer cannot perform (e.g. autofill into a desktop app, copy-to-clipboard for offline use).

Constructors

Payload({required String entryId, SiteTarget? target, ConsumerContext? consumerContext, StepUpProof? stepUpProof, int? ttlSecondsHint, Ext? ext})
const
Payload.fromJson(Map<String, dynamic> json)
Read this payload from a decoded JSON object.
factory

Properties

consumerContext → ConsumerContext?
Caller's situational context — fed to the policy engine.
final
entryId → String
final
ext → Ext?
final
hashCode → int
The hash code for this object.
no setterinherited
runtimeType → Type
A representation of the runtime type of the object.
no setterinherited
stepUpProof → StepUpProof?
Step-up proof on retry after step_up_required.
final
target → Object?
Optional — for entries with multiple targets, indicates which one the consumer is acting against. The maintainer's policy may decide release based on the target (e.g. release for web origin allowed, release for iOS app denied).
final
ttlSecondsHint → int?
Consumer's requested cache TTL for the released secret. The maintainer MAY cap this; the consumer MUST honour the maintainer's decision.
final

Methods

noSuchMethod(Invocation invocation) → dynamic
Invoked when a nonexistent method or property is accessed.
inherited
toJson() → Map<String, dynamic>
Serialize to a JSON-encodable map, omitting absent members.
toString() → String
A string representation of this object.
inherited

Operators

operator ==(Object other) → bool
The equality operator.
inherited