OptionalcontextEncryption context (additional authenticated data).
OptionalfieldsDot-notation path expressions for fields to encrypt (supports .* and [*] wildcards). If omitted, entire payload is encrypted.
OptionalproviderProvider-specific options (escape hatch).
Options for DataMasking.encrypt.