Project mapping · Map
Auth Entitlements Map
Create or update docs/auth_entitlements_map.md as the evidence map connecting authentication, RBAC, ABAC, tenancy, plan/feature gates, quotas, UI affordances, API enforcement, jobs, and audit logs.
Vibe Coding 1.3.0 · vibe-map · English technical instructions
Use this workflow
Use this workflow in Codex or Claude Code with the free Vibe Coding plugin. Choose your assistant and prompt language, then add your task details after the prompt.
Operation
Create or refresh only the requested repository map. A map is a navigation index, not proof of correctness. Verify entries against current owners and preserve stable IDs. If the user asks for an explanation in chat, do not insist on writing a file.
Goal
Create or update docs/auth_entitlements_map.md as the evidence map connecting authentication, RBAC, ABAC, tenancy, plan/feature gates, quotas, UI affordances, API enforcement, jobs, and audit logs.
Inspect
Auth providers, session/membership models, role definitions, policy helpers, ABAC attribute sources, tenant/workspace/project scopes, entitlement/plan/quota code, route guards, API handlers, UI conditionals, feature flags, background jobs, generated clients, tests, audit logs, and docs.
Map content
Evidence and IDs
- Write or update
docs/auth_entitlements_map.mdwhen possible. If writing is unavailable, print the complete markdown content in chat. - Use stable IDs and preserve existing IDs: role
ROLE-*, permission/actionPERM-*, ABAC ruleABAC-*, entitlementENTL-*, gateGATE-*, scopeSCOPE-*, quotaQUOTA-*. - Anchor every rule to owner evidence. Distinguish UI visibility from backend enforcement and policy source from duplicated consumer checks.
Coverage
Cover identities, roles, attributes, tenant scopes, policy decision points, policy enforcement points, plan/feature gates, quota limits, admin/staff/impersonation, invitations, unauthenticated/forbidden/not-found semantics, no-access/upgrade states, background/job contexts, audit logs, and tests.
Entry details
For each permission or entitlement, capture actor, resource, action, scope, attributes, plan/quota dependency, backend owner, UI consumers, API/jobs, error/no-access behavior, tests, audit log expectations, and known drift.
Markdown structure
Use summary, identity/scope model, RBAC matrix, ABAC rules, entitlement/quota matrix, enforcement points, UI affordance map, jobs/integrations, audit logging, tests, gaps, assumptions.
Workflow ID: auth-entitlements-map · View the versioned source · Shared workflow and authority rules