RoleDescriptor
object type
One allow/disallow descriptor: service:action + polarity, per-segment * wildcards; segments drawn verbatim from the operation registry.
Fields
| Field | Type | Notes |
|---|---|---|
service | String String! | The logical service name (today: api), or *. |
action | String String! | The service external operation name (a schema Query/Mutation field), or *. |
polarity | RoleDescriptorPolarity RoleDescriptorPolarity! | No further notes. |