role_reorder
role_reorder is implemented by handleRoleReorder in src/api/handlers/roles/role_reorder.osl.
Handles the role reorder protocol operation through the resource-specific helper and storage layers.
Access
Section titled “Access”| Gate | Requirement |
|---|---|
| Authentication | Required by the central API gate. |
| Central permission | manage_roles |
| Broadcast | Not marked global directly by this adapter. A helper may emit focused or server-wide updates. |
Request
Section titled “Request”Every request includes cmd: "role_reorder" and may include an opaque listener correlation value.
| Field | Validation / meaning |
|---|---|
roles |
schema.array(schema.string()).minLen(1) |
Validator source
Section titled “Validator source”The handler and shared validation path use these OSL schema definitions before normalization:
*schema.Schema schemaRoleReorder = schema.object({ roles: schema.array(schema.string()).minLen(1)})Processing path
Section titled “Processing path”handleCmdenforces authentication and themanage_rolespermission.dispatchCmdroutesrole_reordertohandleRoleReorder.- The adapter validates and normalizes input, then calls its domain collaborators.
- Durable mutations complete before the response or event is returned.
onMessageadds the request listener to direct responses and performs any marked broadcast.
Direct collaborators visible in the handler: userHasPermission, roleReorder, auditRecord, broadcastAuthed
Responses and events
Section titled “Responses and events”Response/event command names visible in this adapter: role_reorder.
Validation and domain failures use:
{ "cmd": "error", "val": "<message>", "src": "role_reorder", "listener": "<copied from request>"}