Skip to main content

Synopsis

Description

capy lock applies only to a local-only profile. It clears the cached unlocked session; the next command that needs the local key prompts for the passphrase again. There is no separate capy unlock command because Capy unlocks on demand. Local-only sessions also lock after their configured idle timeout, which defaults to one hour. Running capy lock is useful before you leave a shared machine. In cloud and BYOC profiles, capy lock reports that it applies only to local-only mode. Use capy logout to end an authenticated cloud or BYOC session; logout does not clear local-only key material.

See also

Last modified on October 2, 2026