Skip to main content
When you’re ready to go live, create a dedicated production API user in PrimeVault. Follow these steps to generate and register your keys, assign the right role, and activate the user securely.

Steps

1

Generate a public-private key pair

You have two secure options:

Generate manually

Use the SDK or OpenSSL to generate the key pair yourself.

Use AWS KMS

Generate and manage your key pair with AWS Key Management Service (KMS).
2

Register your public key

Enter your public key in the PrimeVault UI when creating the API user.The private key must remain securely stored in your environment. You need it to initialize the API client in your code.
3

Assign a role

Choose Admin or User. To learn what each role can do, see Permissions for API User.
4

Activate the API user

Approve the API user addition in the PrimeVault phone app. The API user then becomes active.
5

Save your API key

Copy the API key and save it as an environment variable. You need it to initialize the SDK or API client.
6

Clean up test users

Remove or deactivate any API users used only during testing.
Never hardcode your API key or private key in source code. Store them in environment variables or a secrets manager.

Testing setup

Try the flow with a dedicated test API user first.

Permissions

Understand Admin and User roles.