governance module route (requires governance:rbac:admin)
POST
/v1/m/governance/rbac/grants
const url = 'https://example.com/v1/m/governance/rbac/grants';const options = { method: 'POST', headers: {Authorization: 'Bearer <token>', 'Content-Type': 'application/json'}, body: '{"created_by":"example","id":"example","note":"example","role":"example","role_custom":true,"scope_class":"example","scope_ref":"example","scope_tree":"tenant","subject_kind":"user","subject_ref":"example"}'};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request POST \ --url https://example.com/v1/m/governance/rbac/grants \ --header 'Authorization: Bearer <token>' \ --header 'Content-Type: application/json' \ --data '{ "created_by": "example", "id": "example", "note": "example", "role": "example", "role_custom": true, "scope_class": "example", "scope_ref": "example", "scope_tree": "tenant", "subject_kind": "user", "subject_ref": "example" }'Creates one scoped RBAC grant from the posted document.
Authorizations
Section titled “Authorizations ”Parameters
Section titled “ Parameters ”Header Parameters
Section titled “Header Parameters ” X-Olivares-Tenant
string format: uuid
Target tenant id; required when the principal can act in more than one tenant.
Request Body required
Section titled “Request Body required ” Media type application/json
object
role
required
Must resolve to a built-in role unless role_custom is true, then to a custom role.
string
scope_class
scope_ref
scope_tree
required
string
subject_kind
required
string
subject_ref
required
User/group identifier, or a built-in role name when subject_kind is role.
string
Responses
Section titled “ Responses ”OK
Media type application/json
object
Example generated
{}Bad request
Media type application/json
object
Example generated
{}Unauthenticated
Media type application/json
object
Example generated
{}Forbidden
Media type application/json
object
Example generated
{}Not found
Media type application/json
object
Example generated
{}Conflict / setup required
Media type application/json
object
Example generated
{}Rate limited
Media type application/json
object
Example generated
{}