Deletes a key-signing key (KSK). Before you can delete a KSK, you must deactivate it. The KSK must be deactivated before you can delete it regardless of whether the hosted zone is enabled for DNSSEC signing.
See https://www.paws-r-sdk.com/docs/route53_delete_key_signing_key/ for full documentation.