Skip to content

basalt / permissions/src / ReservedScopeError

Class: ReservedScopeError ​

Defined in: permissions/src/errors.ts:97

The request's tenant id equals a scope the Gate reserves for platform-wide grants (GLOBAL_SCOPE, or the historic 'global'). Evaluating grants there would let the members of that tenant read and write the global bucket, so the check fails closed. Reserve these ids in your tenant registry. Also thrown when a tenant is present in the context without a non-empty string id.

Extends ​

Constructors ​

Constructor ​

> new ReservedScopeError(tenantId): ReservedScopeError

Defined in: permissions/src/errors.ts:99

Parameters ​

tenantId ​

string

Returns ​

ReservedScopeError

Overrides ​

BasaltError.constructor

Properties ​

code ​

> readonly code: string

Defined in: core/src/errors.ts:25

Inherited from ​

BasaltError.code


details? ​

> readonly optional details?: Record<string, unknown>

Defined in: core/src/errors.ts:28

Structured payload passed to the constructor, exactly as given (never sanitised here).

Inherited from ​

BasaltError.details


status ​

> readonly status: 403 = 403

Defined in: permissions/src/errors.ts:98

Released under the MIT License.