Kaizen
Browse modulesAccessaccess/serverInterfaces

Interface: AccessFeatureDeps

Defined in: server/access/deps.ts:60

Dependencies the access services consume. Construct via createAccessServices rather than instantiating manually.

Properties

attributes?

optional attributes?: AttributeRegistry;

Defined in: server/access/deps.ts:66

Authorization attribute allowlist; source/type metadata does not validate values.


audit?

optional audit?: AuditLevel;

Defined in: server/access/deps.ts:70

Decision-audit level. Defaults to "sensitive".


catalog?

optional catalog?: PermissionCatalog<`${string}.${string}`>;

Defined in: server/access/deps.ts:64

In-code permission catalog (deny-by-default; delegability source of truth).


identity

identity: IdentityProvider;

Defined in: server/access/deps.ts:62


logger?

optional logger?: Pick<Logger, "warn">;

Defined in: server/access/deps.ts:74

Diagnostic sink for invalid persisted access data. Defaults to console.


onDecision?

optional onDecision?: OnDecision;

Defined in: server/access/deps.ts:72

Off-hot-path decision-audit hook (defaults to a no-op).


repos

repos: AccessRepositories;

Defined in: server/access/deps.ts:61


resources?

optional resources?: ResourceAuthzRegistry;

Defined in: server/access/deps.ts:68

Resource authz registry powering authorizedWhere.

On this page