- Refactored the ACL enforcement process to include a comprehensive chain of permission checks for clients, users, teams, and members. - Introduced data access constraints (OwnerOnly, TeamOnly) to enhance access control based on endpoint requirements. - Updated the Error struct to include the stage of permission checks where failures occur, improving error reporting. - Enhanced scope management with wildcard matching capabilities and added checks for restricted scopes. - Implemented tests to validate the enforcement logic and ensure correct handling of data access constraints. |
||
|---|---|---|
| .. | ||
| dsl | ||
| file | ||
| hello | ||
| kb | ||
| oauth | ||
| testutils | ||
| user | ||
| config_test.go | ||
| openapi_test.go | ||