User Story #3813
openEpic #3809: EPIC 6: Shared Business Data
US24: Share authorization information
0%
Description
As a connected application, I want to access centralized authorization information so that access rules remain consistent throughout the company's ecosystem.
Acceptance Criteria:
Scoped availability
Connected applications can retrieve the roles and authorization scope relevant to a given user, without automatically exposing PixiPortal's full internal permission catalog.
Validation required
Exposing detailed, permission-level data to a specific application requires explicit validation as part of that application's registration in the catalog (US-16/US-18) — it is not enabled by default.
Consistency
Any change to a user's roles or authorization scope in PixiPortal is reflected for connected applications with validated access.
No data to display