mirror of
https://github.com/supabase/supabase.git
synced 2026-10-11 20:35:07 +03:00
Introduce the data model for the scoped access-token redesign:
- AccessToken.permissions.ts builds a permission catalog from the real
FgaPermissions, groups all ~40 resources into five UI categories
(Project, Database, Application Services, Infrastructure & Delivery,
Account & Organization), and layers editable risk metadata + copy.
- permission-scope-map.{json,ts}: checked-in cross-reference of scope →
Management API endpoints + MCP tools, with conjunctive (dual-scope)
enforcement helpers. Marked TODO to move behind a control-plane endpoint.
- Update access_token_created telemetry + add migration-admonition
localStorage key.
- Reference: apps/studio/.design/scoped-token-sheet-variant-d.html.
Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>