Skip to content

fix: assign or update user roles in auth0#322

Open
mileszim wants to merge 5 commits intomainfrom
assign-customer-role-in-auth0
Open

fix: assign or update user roles in auth0#322
mileszim wants to merge 5 commits intomainfrom
assign-customer-role-in-auth0

Conversation

@mileszim
Copy link
Copy Markdown
Contributor

As part of the larger effort to move permissions and authorization out of the scope of the Rails API service, this PR adds the ability for the Auth0 sync jobs to assign or remove the "customer" role to users. This "customer" role attaches api-endpoint level permission scopes to the JWT signed-in customers send to authorize requests. Later we will use these roles and scopes at the network edge to to approve/deny access.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant