Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
ahoka
on Aug 17, 2023
|
parent
|
context
|
favorite
| on:
Policy Engines: Open Policy Agent vs. AWS Cedar vs...
Yes, you need to consider authorization at every layer. You can blanket deny a lot of things in a midlayer, but sooner or later you need to start interpreting business logic to do the rest.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: