Interface: AccessFeatureDeps
Defined in: server/access/deps.ts:60
Dependencies the access services consume. Construct via
createAccessServices rather than instantiating manually.
Properties
attributes?
optional attributes?: AttributeRegistry;Defined in: server/access/deps.ts:66
Authorization attribute allowlist; source/type metadata does not validate values.
audit?
optional audit?: AuditLevel;Defined in: server/access/deps.ts:70
Decision-audit level. Defaults to "sensitive".
catalog?
optional catalog?: PermissionCatalog<`${string}.${string}`>;Defined in: server/access/deps.ts:64
In-code permission catalog (deny-by-default; delegability source of truth).
identity
identity: IdentityProvider;Defined in: server/access/deps.ts:62
logger?
optional logger?: Pick<Logger, "warn">;Defined in: server/access/deps.ts:74
Diagnostic sink for invalid persisted access data. Defaults to console.
onDecision?
optional onDecision?: OnDecision;Defined in: server/access/deps.ts:72
Off-hot-path decision-audit hook (defaults to a no-op).
repos
repos: AccessRepositories;Defined in: server/access/deps.ts:61
resources?
optional resources?: ResourceAuthzRegistry;Defined in: server/access/deps.ts:68
Resource authz registry powering authorizedWhere.