EditRoleInput
input type
Edit-input for a Role. Every field optional, at least ONE required; supplied fields REPLACE. descriptors REPLACES WHOLESALE when supplied (the list is the payload; supplying strips every grant — default-deny). authorityTier replaces when supplied (no clearing semantic). templateKey/templateVersion are PORT-stamped provenance (copyCannedRole) — never editable. Assigning roles to users is NOT here — user-role assignment is its own slice.
Fields
| Field | Type | Required | Notes |
|---|---|---|---|
caption | String | no | No further notes. |
descriptors | RoleDescriptorInput [RoleDescriptorInput!] | no | No further notes. |
authorityTier | RoleTemplateKey | no | No further notes. |