Skip to content

PRDs: Permissions

Sorted by suggested reading order, top to bottom. Status syncs from Plane on every build - the all-module view lives in the PRD Register.

#IDNameDescriptionSurfaceStatus
1PRD-ROLE-001Fixed & custom roles
  • Product requirements for the role layer
  • eight pre-seeded fixed system roles with a numeric priority hierarchy, plus user-created custom roles scoped to a merchant or organizer, with role create/edit/delete, privilege-escalation guards, and a permission-tree management screen
ClientBack OfficeReady to dev
2PRD-PERM-001Policy definition, permission catalog & grants
  • Product requirements for the policy-definition increment of Permissions
  • a permission-catalog management surface plus a per-target grant/revoke surface that attaches permissions to roles, users, and merchants across BANA's back office and the merchant-facing team module
Back OfficeClientReady to dev
3PRD-EFF-001Per-merchant scoped authorization
  • Product requirements for effective permissions and per-merchant authorization
  • a grant only applies within the exact active merchant of a request, a user's effective permissions combine direct grants with role-inherited grants, every business area applies the same rule, an Owner at a headquarters merchant reaches every sibling merchant, and a newly created merchant grants its owner default management permissions right away
BackendReady to dev
4PRD-HIER-001Resource, Action & Permission Declaration HierarchyModels permissions as a resource tree times an action lattice times an organizer-merchant scope tree, with a minimal-boilerplate declaration toolkit so one coarse grant replaces hundreds of per-operation rowsBackendReady to dev

Proprietary and Confidential. Unauthorized copying, distribution, or use of this software is strictly prohibited.