Skip to content

Function: validateClaims()

ts
function validateClaims(matches, claims): readonly EntitlementViolation[];

Defined in: packages/core/src/introspection/EntitlementScanner.ts:569

Validate detected entitlements against declared claims.

Uses a rule table instead of imperative branching. Each rule encodes a policy check as pure data.

Parameters

ParameterTypeDescription
matchesreadonly EntitlementMatch[]Detected matches
claimsEntitlementClaimsDeclared claims from action metadata

Returns

readonly EntitlementViolation[]

Violations found