Function: scopeChain()
function scopeChain(scope: GrantScope): GrantScope[];Defined in: shared/access/scope-key.ts:37
The scope CHAIN a check compiles against, ordered MOST SPECIFIC FIRST, so
[0] is always the target scope (the decision audit stamps it).
DERIVED here, never accepted from a caller: the direction is one-way —
platform authority satisfies an org-scoped question, an org grant never
satisfies a platform-scoped one — and a caller-supplied chain would let a
platform-targeted grant be satisfied by org-derived permissions at
GrantService.create's subset check.
Parameters
| Parameter | Type |
|---|---|
scope | GrantScope |