Rick W.
10/09/2023, 5:46 PMSam Lock (Cerbos)
10/10/2023, 10:12 AMAuxData is currently only for JWTs. The reason we don't support additional free-form data in there is because then it adds an extra dimension making it a bit more difficult to decide where data should go. Your colleagues might have different ideas to yours and design their policies differently and then it starts to get messy. So we only support free-form data under principal or resource only. In practice, most data points at least have a passing relationship to either the principal or the resource so we sacrifice a bit of purity for simplicity.