---
title: Key Management
product: vercel
url: /docs/agent-resources/vercel-mcp/tools/key-management
canonical_url: "https://vercel.com/docs/agent-resources/vercel-mcp/tools/key-management"
last_updated: 2018-10-20
type: reference
prerequisites:
  - /docs/agent-resources/vercel-mcp/tools
  - /docs/agent-resources/vercel-mcp
related:
  []
summary: Vercel MCP tools for key management.
install_vercel_plugin: npx plugins add vercel/vercel-plugin
---

# Key Management

Manage signing keys and issuer policies for your team. You can create and activate keys, sign messages or tokens, and revoke keys that should no longer be used.

## `activate_kms_signing_key`

Activate a signing key.

## Parameters

| Parameter     | Type   | Required | Description                                    |
| ------------- | ------ | -------- | ---------------------------------------------- |
| `issuerId`    | string | Yes      | The ID of the issuer.                          |
| `keyId`       | string | Yes      | The ID of the pending signing key to activate. |
| `teamId`      | string | No       | Team ID.                                       |
| `slug`        | string | No       | Team slug.                                     |
| `requestBody` | object | No       | Request body for this tool.                    |

## `create_kms_issuer_policy`

Create an issuer policy.

## Parameters

| Parameter     | Type   | Required | Description                 |
| ------------- | ------ | -------- | --------------------------- |
| `issuerId`    | string | Yes      | The ID of the issuer.       |
| `teamId`      | string | No       | Team ID.                    |
| `slug`        | string | No       | Team slug.                  |
| `requestBody` | object | No       | Request body for this tool. |

## `create_kms_signing_key`

Create a signing key.

## Parameters

| Parameter     | Type   | Required | Description                 |
| ------------- | ------ | -------- | --------------------------- |
| `issuerId`    | string | Yes      | The ID of the issuer.       |
| `teamId`      | string | No       | Team ID.                    |
| `slug`        | string | No       | Team slug.                  |
| `requestBody` | object | No       | Request body for this tool. |

## `get_kms_issuer`

Get an issuer.

## Parameters

| Parameter  | Type   | Required | Description           |
| ---------- | ------ | -------- | --------------------- |
| `issuerId` | string | Yes      | The ID of the issuer. |
| `teamId`   | string | No       | Team ID.              |
| `slug`     | string | No       | Team slug.            |

## `revoke_kms_signing_key`

Revoke a signing key.

## Parameters

| Parameter     | Type    | Required | Description                                                                                        |
| ------------- | ------- | -------- | -------------------------------------------------------------------------------------------------- |
| `issuerId`    | string  | Yes      | The ID of the issuer.                                                                              |
| `keyId`       | string  | Yes      | The ID of the signing key to revoke immediately. The key must already be scheduled for revocation. |
| `teamId`      | string  | No       | Team ID.                                                                                           |
| `slug`        | string  | No       | Team slug.                                                                                         |
| `requestBody` | unknown | No       | Request body for this tool.                                                                        |

## `sign_kms_message`

Sign a message.

## Parameters

| Parameter     | Type   | Required | Description                 |
| ------------- | ------ | -------- | --------------------------- |
| `issuerId`    | string | Yes      | The ID of the issuer.       |
| `requestBody` | object | No       | Request body for this tool. |
| `teamId`      | string | No       | Team ID.                    |

## `sign_kms_token`

Sign a token.

## Parameters

| Parameter     | Type   | Required | Description                 |
| ------------- | ------ | -------- | --------------------------- |
| `issuerId`    | string | Yes      | The ID of the issuer.       |
| `requestBody` | object | No       | Request body for this tool. |
| `teamId`      | string | No       | Team ID.                    |

## `update_kms_issuer`

Update an issuer.

## Parameters

| Parameter     | Type   | Required | Description                 |
| ------------- | ------ | -------- | --------------------------- |
| `issuerId`    | string | Yes      | The ID of the issuer.       |
| `teamId`      | string | No       | Team ID.                    |
| `slug`        | string | No       | Team slug.                  |
| `requestBody` | object | No       | Request body for this tool. |

## `update_kms_issuer_policy`

Update an issuer policy.

## Parameters

| Parameter     | Type   | Required | Description                                                |
| ------------- | ------ | -------- | ---------------------------------------------------------- |
| `issuerId`    | string | Yes      | The ID of the issuer.                                      |
| `kind`        | string | Yes      | The issuer policy kind. Allowed values: `"project-grant"`. |
| `policyKey`   | string | Yes      | The policy identifier.                                     |
| `teamId`      | string | No       | Team ID.                                                   |
| `slug`        | string | No       | Team slug.                                                 |
| `requestBody` | object | No       | Request body for this tool.                                |


---

[View full sitemap](/docs/sitemap)
