feat: scope allow_list to include resource_type (#19748)

This feature allows the `allow_list` in the scopes to specify the `type`
This commit is contained in:
Steven Masley
2025-09-17 08:32:14 -05:00
committed by GitHub
parent 3df9d8e902
commit 679179f404
6 changed files with 203 additions and 24 deletions
+1 -1
View File
@@ -169,7 +169,7 @@ This command answers the question: “Is the user allowed?”
### Partial Evaluation
```bash
opa eval --partial --format=pretty 'data.authz.allow' -d policy.rego --unknowns input.object.owner --unknowns input.object.org_owner --unknowns input.object.acl_user_list --unknowns input.object.acl_group_list -i input.json
opa eval --partial --format=pretty 'data.authz.allow' -d policy.rego --unknowns input.object.id --unknowns input.object.owner --unknowns input.object.org_owner --unknowns input.object.acl_user_list --unknowns input.object.acl_group_list -i input.json
```
This command performs a partial evaluation of the policy, specifying a set of unknown input parameters.