basalt / permissions/src / GLOBAL_SCOPE
Variable: GLOBAL_SCOPE
> const GLOBAL_SCOPE: "@global" = '@global'
Defined in: permissions/src/index.ts:115
Global scope key — role/permission grants that apply in every tenant.
Deliberately NOT a value a tenant id can take (no slug, hostname label, uuid or cuid contains '@'): grants are keyed by the tenant id, so a global scope spelt like a tenant id lets whoever owns a tenant with that id write platform-wide grants. The Gate also refuses to evaluate a tenant whose id is a reserved scope (ReservedScopeError).