Joey
02/02/2024, 7:38 PMrmadisonhaynie
02/02/2024, 8:20 PMJoey
02/02/2024, 8:23 PMJoey
02/02/2024, 8:23 PMJoey
02/02/2024, 8:23 PMrmadisonhaynie
02/02/2024, 8:38 PMJoey
02/02/2024, 9:18 PMJoey
02/02/2024, 9:18 PMJoey
02/02/2024, 9:21 PMdefinition user {
relation role: role
permission is_internal_admin = role->is_internal_admin
}
definition role {
relation can_admin: organization
permission is_internal_admin = can_admin->member
}
definition organization {
relation member: user
}
definition account {
relation user: user
permission can_admin = user->is_internal_admin
}
Joey
02/02/2024, 9:21 PMJoey
02/02/2024, 9:22 PMcan_*
to the organization's membersJoey
02/02/2024, 9:22 PMuser
to account, you're asking if the user also has a role with can_
for the specific permissionJoey
02/02/2024, 9:23 PMorganization->member
rmadisonhaynie
02/02/2024, 10:37 PMrmadisonhaynie
02/02/2024, 10:41 PMJoey
02/02/2024, 10:48 PMrelation
) is a piece of dataJoey
02/02/2024, 10:48 PMJoey
02/02/2024, 10:48 PMrmadisonhaynie
02/03/2024, 8:56 AMJoey
02/03/2024, 6:50 PManselmobattisti
02/04/2024, 11:24 AMrmadisonhaynie
02/04/2024, 12:11 PMJoey
02/04/2024, 6:36 PMJoey
02/04/2024, 6:36 PMJoey
02/04/2024, 6:37 PMJoey
02/04/2024, 6:37 PMJoey
02/04/2024, 6:37 PMpermission view = viewer