basalt / permissions/src / ReservedScopeError
Class: ReservedScopeError
Defined in: permissions/src/errors.ts:97
The request's tenant id equals a scope the Gate reserves for platform-wide grants (GLOBAL_SCOPE, or the historic 'global'). Evaluating grants there would let the members of that tenant read and write the global bucket, so the check fails closed. Reserve these ids in your tenant registry. Also thrown when a tenant is present in the context without a non-empty string id.
Extends
Constructors
Constructor
> new ReservedScopeError(tenantId): ReservedScopeError
Defined in: permissions/src/errors.ts:99
Parameters
tenantId
string
Returns
ReservedScopeError
Overrides
Properties
code
> readonly code: string
Defined in: core/src/errors.ts:25
Inherited from
details?
> readonly optional details?: Record<string, unknown>
Defined in: core/src/errors.ts:28
Structured payload passed to the constructor, exactly as given (never sanitised here).
Inherited from
status
> readonly status: 403 = 403
Defined in: permissions/src/errors.ts:98