Rotate the password for a credential
Accepts a client-chosen new password, encrypts it with the current master key, persists it as pending (Phase 0), calls BACEN’s PUT /staws/senha (Phase 1), and promotes pending -> encrypted (Phase 2).
POST
Rotate the password for a credential
Authorizations
JWT bearer token issued by the identity provider.
Path Parameters
Credential UUID
Example:
"018f3b2a-0c1d-7a2b-9e4f-1a2b3c4d5e6f"
Body
application/json
Rotation payload carrying the new plaintext password

