Capabilities

Permission-Aware Retrieval & Access Enforcement

Ensuring retrieval only ever surfaces content the requesting person is authorised to see — normalising heterogeneous source-system permission schemes (POSIX-style ACLs, RBAC scopes, sensitivity labels) into one filterable model, then enforcing it at query time against live claims. Includes the chunk-level rule that a fragment must inherit the most restrictive permission touching it, not the source document's average.