vault.*. Both fire for vault sessions you created and for links you sent with POST /api/v2/checkout/vault_link.
A vault session linked to a user, and a card landed in their vault.
vault.*. Both fire for vault sessions you created and for links you sent with POST /api/v2/checkout/vault_link.