Skip to content
Discussion options

You must be logged in to vote

It's best to lock down permissions anywhere as much as possible. The scope in which the exec role is assumed might not be the same scope in which the user could potentially assume other roles.

Aside from the direct concern, tracking metrics or calls made by certain roles might be an alternate concern

Replies: 2 comments

Comment options

You must be logged in to vote
0 replies
Answer selected by peterwoodworth
Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants