yetitwo
12/01/2025, 10:20 PMyetitwo
12/01/2025, 10:20 PMyetitwo
12/01/2025, 10:21 PMyetitwo
12/01/2025, 10:21 PMzed permission check --explainyetitwo
12/02/2025, 3:19 AMpuneetchitkariya
12/02/2025, 6:15 AMmarioc
12/02/2025, 10:13 AMFounding AI Engineer
12/02/2025, 10:57 AMmor
12/02/2025, 12:02 PMspringroll12
12/03/2025, 1:57 PMToi
12/03/2025, 7:49 PMNikhil
12/03/2025, 10:25 PMPerseus
12/04/2025, 9:19 AMpablo
12/05/2025, 9:20 AMjs
β issue:23246 view (220.908873ms)
βββ β¨ issue:23246 n_cc (2.714128ms)
βββ β portfolio:2 view (170.977547ms)
βββ β portfolio:2 admin (162.245418ms)
βββ β tenant:1 is_admin (149.084628ms)
βββ β tenant:1 super_admin (139.782078ms)
βββ β role:super_admin_1 neighbour (23.867279ms)
βββ neighbour:15Kurt
12/05/2025, 7:55 PMJoey
12/05/2025, 8:38 PMKurt
12/05/2025, 8:39 PMmagec
12/09/2025, 8:54 AMcustom_role, where I define the organization relationship, and also 'self relationships' one per 'permissions' in apps. With this in-place I just need to add these custom_org permissions from orgs to the calculation of app permissions, is this correct?Sohan
12/09/2025, 7:03 PMspicedb-parser-js . We also have Atikur who will demo a UI he built for SpiceDB called Lens.
This will be right here in Discord: https://discord.gg/RGCKZQQz?event=1443309664275136785frekw
12/10/2025, 9:59 AMKolt
12/10/2025, 5:44 PMAtikur Rahman
12/10/2025, 6:07 PMdystopiandev
12/12/2025, 7:22 PM<type> with expiration delegates value of now to the underlying data store.
About this:
> It requires clients to provide the now timestamp. This is additional complexity for clients.
Conversely, client-side provision of that value is crucial to our systems.
We use TimeProvider abstraction in .NET that serves as the central source of truth for time, meaning we always override data stores' internal clocks by explicitly setting time columns/fields.
Our TimeProvider is backed by different sources across projects, but what's important is that the app decides what now is, not any of the data stores or other infra.
So we've skimmed and weren't able to find any notes on this: if specifying now for <type> with expiration is planned, unplanned or outright technically impossible to implement even in the future.
If anyone could advise please. Thanks.StanFyr
12/15/2025, 4:11 PMdefinition workspace {
relation parent: workspace
permission secured = parent->secured & other_irrelevant_perm
permission other_irrelevant_perm = <the other permission checked at each level>
}
is there a way to ignore the `parent->secured`if parent has no relations ?Joey
12/15/2025, 5:10 PMparent->secured to something like "all users" or a wildcard on the "root" workspaceJoey
12/15/2025, 5:10 PMStanFyr
12/15/2025, 5:12 PMStanFyr
12/15/2025, 5:12 PMJoey
12/15/2025, 6:20 PMponyloky
12/17/2025, 10:37 AM