Skip to content
Updated Sep 16, 2026 by Barča Dvořáková · Owner: analysisactiveentityjson-dat Edit on GitHub

JSON-DAT: permissionSet.rules ​

JSONB element of: permissionSet.rules

The column holds an array of permission rule objects.

Data Attributes Table ​

Attribute NameDescriptionData TypeDefault ValueRequired (= Nullable)UniqueFormatValidationsIndexExample
permissionCodeThe permission this rule applies to (e.g. tenant.buildings.read).String-YesNodot.separated codeNon-empty-tenant.buildings.read
effectWhether this rule grants or removes the permission. A deny always wins over an allow for the same code within one Permission Set.Enum (PermissionRuleEffect)-YesNo-One of: allow, deny-allow
scopeHow broadly the rule applies. Currently only all (every record the permission code covers) — own and resource were both considered and dropped; see PermissionRuleScope.Enum (PermissionRuleScope)-YesNo-One of: all-all