diff options
| -rw-r--r-- | app/app_test.go | 10 | ||||
| -rw-r--r-- | pkg/policies/album.cedar | 5 | ||||
| -rw-r--r-- | pkg/policies/entities.json | 23 |
3 files changed, 0 insertions, 38 deletions
diff --git a/app/app_test.go b/app/app_test.go index fcdee36c..f0068e87 100644 --- a/app/app_test.go +++ b/app/app_test.go @@ -28,16 +28,6 @@ func TestApp(t *testing.T) { assert.False(t, reply.Result) }) - t.Run("allows alice:view:jane_vacation", func(t *testing.T) { - reply, err := client.Allowed(t.Context(), &rpc.AllowRequest{ - Subject: "gid://example/User/alice", - Permission: "view", - Resource: "gid://example/Album/jane_vacation", - }) - require.NoError(t, err) - assert.True(t, reply.Result) - }) - t.Run("allows gid://User/1 read gid://Organization/2", func(t *testing.T) { reply, err := client.Allowed(t.Context(), &rpc.AllowRequest{ Subject: "gid://example/User/1", diff --git a/pkg/policies/album.cedar b/pkg/policies/album.cedar deleted file mode 100644 index aed5a53e..00000000 --- a/pkg/policies/album.cedar +++ /dev/null @@ -1,5 +0,0 @@ -permit ( - principal == User::"alice", - action == Permission::"view", - resource in Album::"jane_vacation" -); diff --git a/pkg/policies/entities.json b/pkg/policies/entities.json index 75d08750..8d50e674 100644 --- a/pkg/policies/entities.json +++ b/pkg/policies/entities.json @@ -2,29 +2,6 @@ { "uid": { "type": "User", - "id": "alice" - }, - "attrs": { - "age": 18 - }, - "parents": [] - }, - { - "uid": { - "type": "Photo", - "id": "VacationPhoto94.jpg" - }, - "attrs": {}, - "parents": [ - { - "type": "Album", - "id": "jane_vacation" - } - ] - }, - { - "uid": { - "type": "User", "id": "1" }, "attrs": {}, |
