Kaizen
Browse modulesAccessaccess/sharedInterfaces

Interface: AccessRequest

Defined in: shared/access/types.ts:209

A single authorization check.

Properties

action

action: `${string}.${string}`;

Defined in: shared/access/types.ts:210


consistency?

optional consistency?: "eventual" | "strong";

Defined in: shared/access/types.ts:226

Consistency tier. v1 compiles a fresh snapshot per request, so "strong" is an accepted NO-OP (every compile is already fresh). Kept on the contract so a v2 cache can honor it without changing call sites.


context?

optional context?: AccessContext;

Defined in: shared/access/types.ts:220


resource?

optional resource?: object;

Defined in: shared/access/types.ts:211


resourceType?

optional resourceType?: string;

Defined in: shared/access/types.ts:219

The resource's type ("product", "order", …). When a grant's selector declares a resourceType, the request's resourceType MUST equal it or the selector does not match — a typed grant can never authorize a different resource type (deny-by-default). A request that carries no resourceType is never matched by a typed selector.

On this page