Install
openclaw skills install authzPermissions, roles, policies, and enforcement points. Use when designing RBAC/ABAC or fixing authZ holes.
openclaw skills install authzStructured guidance for authorization (RBAC, ABAC, policy enforcement): confirm triggers, propose the stages below, and adapt if the user wants a lighter pass.
Trigger conditions:
Initial offer: Explain the four stages briefly and ask whether to follow this workflow or work freeform. If they decline, continue in their preferred style.
Anchor on model: RBAC/ABAC/ReBAC. Ask what success looks like, constraints, and what must not break. Capture unknowns early.
Translate goals into a concrete plan around policy enforcement points. Compare alternatives and explicit trade-offs; avoid implicit assumptions.
Execute with verification loops tied to auditing and admin paths. Prefer small steps, measurable checks, and rollback points where risk is high.
Close the loop with testing negative cases: monitoring, documentation, stakeholder updates, and lessons learned for the next cycle.