Interface: AccessRequest
Defined in: shared/access/types.ts:209
A single authorization check.
Properties
action
action: `${string}.${string}`;Defined in: shared/access/types.ts:210
consistency?
optional consistency?: "eventual" | "strong";Defined in: shared/access/types.ts:226
Consistency tier. v1 compiles a fresh snapshot per request, so
"strong" is an accepted NO-OP (every compile is already fresh). Kept on
the contract so a v2 cache can honor it without changing call sites.
context?
optional context?: AccessContext;Defined in: shared/access/types.ts:220
resource?
optional resource?: object;Defined in: shared/access/types.ts:211
resourceType?
optional resourceType?: string;Defined in: shared/access/types.ts:219
The resource's type ("product", "order", …). When a grant's selector
declares a resourceType, the request's resourceType MUST equal it or
the selector does not match — a typed grant can never authorize a
different resource type (deny-by-default). A request that carries no
resourceType is never matched by a typed selector.