Hacker News new | ask | show | jobs
by cameronfraser 2314 days ago
permissions are regularly included in scopes and you should be driving access based on permissions, not roles, roles are just a bucket for permissions.