Docs: spaces & membership handbook — two models, config, optional IdP-write power mode #218
Labels
No labels
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference: Cordy/Cairn#218
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Parent: #211. Land as the feature ships (don't document ahead of behaviour).
Update the handbook for the shipped model:
spaces.md(or the spaces section): the two kinds of space — read-only IdP-group spaces vs app-owned Cairn spaces — what each is for, how membership works, owner/roles, and the collision rule.deployment.md/ config reference: the new group/IdP config block (read client vs write power mode), that app-owned spaces are the default and need no IdP client, and themanage-usersblast-radius warning on the power mode.encryption.md: fix the now-stale coupling — the Keycloak admin client is no longer an encryption/custody concern.Product-neutral, per the handbook rules. Also feeds the v0.8 doc-refresh (#206).