maiven gateway · online··
manifest · 1d ago
Sign in Back to catalog
Definition
The RBAC matrix declaring, per logistics role, which actions are allowed or denied on each resource type and within what scope. Reference data describing intended access policy for the warehousing personas — no personal data. The client_account_manager rows document-as-data the client-scoped row policy actually enforced by governance.client_grants + getSetting('SQL_client_identity').
6 of 6
Column
Description
Tests · PII
permission_id
UUID5 — primary key on the source side. Stable across re-syncs.
2 tests
role
Logistics role the rule applies to — `logistics_ops_manager`, `client_account_manager`, `logistics_ai_analyst`, `compliance_officer`.
resource_type
Resource the rule governs — `order`, `inventory`, `contract`, `site`, `consignee`, `document_corpus`.
action
Action the rule governs — `read`, `write`, `approve`, `export`.
effect
Whether the rule grants or denies — `allow`, `deny`.
scope_filter
Scope expression bounding the rule (e.g. `client_id=own_client_grant`, `region='EU'`, `*`). Free-text.