The platform layer above all three departments — one organization, shared decision spine, role-based access.
Identity comes from the adapter (mock session, else pilot actor). Permissions come from @merritt/workspace.
Identity source
sessionAuthenticated
noPilot fallback
disabledRole
Unauthenticated (VIEWER)
Export proof packet
deniedApprove decision
deniedReview decision
deniedPilot actor selection is for demo only. Disable ALLOW_PILOT_ACTOR_FALLBACK before production.
The Merritt Methods Demo Workspace: 3 departments, 3 projects, 5 users. 3 open decision(s), 3 blocked proof packet(s), 3 pending approval(s). Status: attention.
Departments
3
Projects
3
Users
5
Open decisions
3
All three departments belong to this workspace and share one spine.
Open decisions
3
Blocked proof packets
3
Pending approvals
3
Status
attentionPlaceholder RBAC — production identity comes later.
| Role | Permissions |
|---|---|
| OWNER | VIEW WORKSPACE, VIEW DECISIONS, CREATE DECISION, REVIEW DECISION, APPROVE DECISION, MANAGE EVIDENCE, MANAGE RESEARCH, EXPORT PROOF PACKET, MANAGE USERS, MANAGE SETTINGS |
| ADMIN | VIEW WORKSPACE, VIEW DECISIONS, CREATE DECISION, REVIEW DECISION, APPROVE DECISION, MANAGE EVIDENCE, MANAGE RESEARCH, EXPORT PROOF PACKET, MANAGE USERS, MANAGE SETTINGS |
| COMPLIANCE LEAD | VIEW WORKSPACE, VIEW DECISIONS, REVIEW DECISION, APPROVE DECISION, MANAGE EVIDENCE, MANAGE RESEARCH, EXPORT PROOF PACKET |
| REVIEWER | VIEW WORKSPACE, VIEW DECISIONS, REVIEW DECISION |
| CONTRIBUTOR | VIEW WORKSPACE, VIEW DECISIONS, CREATE DECISION, MANAGE EVIDENCE, MANAGE RESEARCH |
| VIEWER | VIEW WORKSPACE, VIEW DECISIONS |
• RBAC is a pure placeholder — not production authentication.
• Every department belongs to this workspace; every decision belongs to the org.
• Human approval requires APPROVE_DECISION; proof-packet export requires EXPORT_PROOF_PACKET.