rbac_check_permission
Check whether an agent can perform an action on a resource type, falling back to a default reader role if the agent has no assignments.
Instructions
η.6.1 — Check whether an agent can perform an action on a resource type. Falls back to defaultRole=reader for agents with no assignments.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| now | No | Optional time override for hypothetical-time queries | |
| action | Yes | ||
| agentId | Yes | ||
| resourceName | No | Optional resource name for scope-prefix matching | |
| resourceType | Yes |