What is the supposed use-case for this library?
I've also used similar code to manage an encrypted file store for a small business - since each file gets its own locks (essentially a cryptographic ACL) and each attached key is publicly identified, it's easy to see who can read (or change) any given file. Being able to remove lockboxes without decrypting the data means that a sysadmin can strip access from someone who leaves the company without needing an all-powerful "root" key.
Since then, I haven't shed the habit of designing for the general case (this is also known as avoiding vendor lock-in :)