ACL aware swagger.json

13 views
Skip to first unread message

Ernest Okot

unread,
Apr 27, 2017, 2:23:12 AM4/27/17
to LoopbackJS
Hello,

First of all, thanks for the awesome framework. Life wouldn't be the same without loopback.

I want to be able to check whether a user can perform a given action on the client side. Is it possible serve a swagger.json file containing only the endpoints that the requesting user is authorised to access. For example, unauthenticated users would receive only endpoints that $everyone can access.

Is there an alternative?

Regards,
Ernest Okot

Reply all
Reply to author
Forward
0 new messages