# Cross-link map: Key Management Service \\(KMS\\) (/docs/kms)

> From the Vercel docs graph (built 2026-09-21T05:26:59.511Z), spanning vercel.com docs + KB, nextjs.org, ai-sdk.dev, and other Vercel documentation sites. Full graph as JSON: https://vercel.com/docs/graph.json

## Semantically closest pages

- [Vercel KMS Authentication](https://vercel.com/docs/kms/concepts/authentication?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=semantic) — How Vercel KMS authorizes signing requests with a deployment OIDC token, authorizes management requests with a Vercel ac
- [Vercel KMS Quickstart](https://vercel.com/docs/kms/quickstart?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=semantic) — Create a KMS issuer, sign a JWT from a Vercel Function with @vercel/kms, and verify it against the published JWKS.
- [Vercel KMS SDK Reference](https://vercel.com/docs/kms/ts-sdk-reference?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=semantic) — API reference for @vercel/kms, including signToken, signMessage, region resolution, and signing the KMS API directly wit
- [Sign JWTs from your Functions without managing private keys](https://vercel.com/changelog/sign-jwts-from-your-functions-without-managing-private-keys?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=semantic)
- [Vercel KMS Concepts](https://vercel.com/docs/kms/concepts?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=semantic) — Understand how Vercel KMS rotates signing keys and how it authorizes signing, management, and verification.

## This page links to (8)

- [Vercel Connect](https://vercel.com/docs/connect?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=outbound) — Give your agents and services secure, short-lived access to third-party APIs like Slack, GitHub, Microsoft, and Snowflak
- [Vercel Functions](https://vercel.com/docs/functions?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=outbound) — Build API routes, webhooks, and agent request handlers with Vercel Functions, then test and debug them with Vercel CLI.
- [Vercel KMS Authentication](https://vercel.com/docs/kms/concepts/authentication?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=outbound) — How Vercel KMS authorizes signing requests with a deployment OIDC token, authorizes management requests with a Vercel ac
- [Vercel KMS Key Rotation](https://vercel.com/docs/kms/concepts/key-rotation?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=outbound) — How Vercel KMS stages a pending signing key, schedules its activation, and retires the previous key so already-issued to
- [Vercel KMS Pricing and Limits](https://vercel.com/docs/kms/pricing?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=outbound) — How Vercel KMS is billed per signing operation, the platform limits that apply, and how to stop being billed.
- [Vercel KMS Quickstart](https://vercel.com/docs/kms/quickstart?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=outbound) — Create a KMS issuer, sign a JWT from a Vercel Function with @vercel/kms, and verify it against the published JWKS.
- [Vercel KMS SDK Reference](https://vercel.com/docs/kms/ts-sdk-reference?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=outbound) — API reference for @vercel/kms, including signToken, signMessage, region resolution, and signing the KMS API directly wit
- [OpenID Connect \\(OIDC\\) Federation](https://vercel.com/docs/oidc?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=outbound) — Secure the access to your backend using OIDC Federation to enable auto-generated, short-lived, and non-persistent creden

## Pages that link here (3)

By site: vercel-changelog (1) · vercel-docs (2)

### From vercel-changelog

- [Sign JWTs from your Functions without managing private keys](https://vercel.com/changelog/sign-jwts-from-your-functions-without-managing-private-keys?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=inbound)

### From vercel-docs

- [Authorization Server API](https://vercel.com/docs/sign-in-with-vercel/authorization-server-api?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=inbound) — Learn how to use the Authorization Server API
- [Manage Sign in with Vercel from the Dashboard](https://vercel.com/docs/sign-in-with-vercel/manage-from-dashboard?from=graph&source_path=%2Fdocs%2Fkms&source_site=vercel-docs&relationship=inbound) — Learn how to manage Sign in with Vercel from the Dashboard
