Was wondering if anyone had a quick answer. I've been looking into Zanzibar and ReBAC all day. Just started to play around with SpiceDB.
One feature of my application is that users can create API Keys with a restricted set of permissions.
In ReBAC I'm not sure how I can accomplish this since the API key should still be the "user" I assume. It doesn't seem reasonable to insert a whole set of new relationships for this API Key right?