0xkey-keyops-share
0xkey KeyOps — Share Set member
This skill is loaded explicitly by users acting as a Share Set member for a 0xkey enclave ceremony. It is deliberately local-only and does not require AWS credentials, kubectl access, kubeconfig, EKS context, VPC details, or Cloudflare details.
Scope
Verify the Coordinator's share-request bundle, use the member's local
.secret / .share to run proxy-re-encrypt-share, and return a
wrapped-shares bundle to the Coordinator. On the first ceremony (or after
quorum-key rotation), the member also runs ceremony share-extract against
the Coordinator's Genesis-output bundle to materialize their .share.
alias and member-index are assigned by the Coordinator in
member-roster.json and become permanent for the resulting quorum_key.
Members never self-pick these values.