List, grant, or revoke a principal's access on a node
node_permissionList, grant, or revoke a principal's access on a node
Grants access to a named user or space INSIDE the workspace — this is not link sharing (see node_share). Requires manage on the node. Roles escalate: read < changeRequest < write < manage; changeRequest lets someone propose changes without being able to merge them.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| role | No | Access level to grant (grant only). | |
| action | Yes | What to do. Choose this before the other arguments. | |
| nodeId | Yes | Node to inspect or change. | |
| playbook | No | Optional. The playbook you are following, as `kind:nodeId[:key]` from playbooks_search (e.g. `prompt:nod_123:log-visit`). Recorded on the change request so the person can see which playbook produced it. | |
| principalId | No | Id of the user or space. | |
| principalType | No | Whether the grant targets a user or a whole space. | |
| targetSpaceId | No | Busabase space id. Call auth_verify first and ask the user which space to use when more than one is returned. |