Skip to main content

Synopsis

Description

capy end-recover ends the active recovery session and removes files in the current directory matching .env.*.decrypted. Those files contain plaintext secret material. Without an active recovery session, it does not remove files. Instead it reports any matching decrypted files still present so you can delete them manually. The global --web flag provides a browser review surface for the active-session cleanup.

See also

Last modified on October 2, 2026