Summary
This epic covers two things: (1) investigating the full scope of Aggie's user
access control functionality — roles, permissions, overrides, and team-scoped
access — to understand what currently exists and how it resolves, and (2)
redesigning the user and team management flows so that access control is clear,
approachable, and easy to reason about.
Goals
-
Investigate access control functionality. Audit how roles, permissions,
overrides, and team memberships work today across the backend and frontend,
and identify gaps, inconsistencies, and points of confusion.
-
Redesign user/team flows. Rework how users and teams are configured so
the experience better unveils access control — making it obvious what a user
can do, why they can do it, and how roles and team membership shape their
permissions.
Notes
This is a tracking ticket. Concrete UI, flow, and implementation work will be
broken out into linked child issues once the investigation is done.
Summary
This epic covers two things: (1) investigating the full scope of Aggie's user
access control functionality — roles, permissions, overrides, and team-scoped
access — to understand what currently exists and how it resolves, and (2)
redesigning the user and team management flows so that access control is clear,
approachable, and easy to reason about.
Goals
Investigate access control functionality. Audit how roles, permissions,
overrides, and team memberships work today across the backend and frontend,
and identify gaps, inconsistencies, and points of confusion.
Redesign user/team flows. Rework how users and teams are configured so
the experience better unveils access control — making it obvious what a user
can do, why they can do it, and how roles and team membership shape their
permissions.
Notes
This is a tracking ticket. Concrete UI, flow, and implementation work will be
broken out into linked child issues once the investigation is done.