diff --git a/README.md b/README.md index 8a9d801..c5d4c83 100644 --- a/README.md +++ b/README.md @@ -197,6 +197,9 @@ Creates a new unlocker of the specified type: **Options:** - `--keyid `: GPG key ID (optional for PGP type, uses default key if not specified) +A vault has one passphrase unlocker: adding one replaces the one the vault +has, which is removed only once the new one is the current unlocker. + #### `secret unlocker remove [--force]` / `secret unlocker rm` ⚠️ 🛑 **DANGER**: Permanently removes an unlocker. Like Unix `rm`, this command @@ -243,8 +246,8 @@ Decrypts data using an Age key stored as a secret. ├── vaults.d/ │ ├── default/ │ │ ├── unlockers.d/ -│ │ │ ├── passphrase/ # Passphrase unlocker -│ │ │ └── pgp/ # PGP unlocker +│ │ │ ├── passphrase-