Kaizen
Browse modulesAccessaccess/sharedFunctions

Function: scopeChain()

function scopeChain(scope: GrantScope): GrantScope[];

Defined in: shared/access/scope-key.ts:37

The scope CHAIN a check compiles against, ordered MOST SPECIFIC FIRST, so [0] is always the target scope (the decision audit stamps it).

DERIVED here, never accepted from a caller: the direction is one-way — platform authority satisfies an org-scoped question, an org grant never satisfies a platform-scoped one — and a caller-supplied chain would let a platform-targeted grant be satisfied by org-derived permissions at GrantService.create's subset check.

Parameters

ParameterType
scopeGrantScope

Returns

GrantScope[]

On this page