Skip to content

basalt / permissions/src / GLOBAL_SCOPE

Variable: GLOBAL_SCOPE ​

> const GLOBAL_SCOPE: "@global" = '@global'

Defined in: permissions/src/index.ts:115

Global scope key — role/permission grants that apply in every tenant.

Deliberately NOT a value a tenant id can take (no slug, hostname label, uuid or cuid contains '@'): grants are keyed by the tenant id, so a global scope spelt like a tenant id lets whoever owns a tenant with that id write platform-wide grants. The Gate also refuses to evaluate a tenant whose id is a reserved scope (ReservedScopeError).

Released under the MIT License.