authzed / spicedb

Open Source, Google Zanzibar-inspired permissions database to enable fine-grained authorization for customer applications
https://authzed.com/docs
Apache License 2.0
4.71k stars 250 forks source link

Add better subject error messages on write/delete validation #1943

Closed josephschorr closed 1 week ago

josephschorr commented 2 weeks ago

Fixes #1939

Examples:

subjects of type `user` are not allowed on relation `resource#viewer` without one of the following caveats: somecaveat

subjects of type `user` are not allowed on relation `resource#viewer`; did you mean `user#member`?