One entry of an access-control-list row's inheritedPermissions: capabilities the row's principal
holds from a grant made somewhere other than this resource, and where that grant lives.
source is an entity reference. A grant held customer-wide is spelled as the bare domain token
with no trailing separator — "twin" for the asset capabilities a twin reports — which is where
an administration UI has to go to change them.
One entry of an access-control-list row's
inheritedPermissions: capabilities the row's principal holds from a grant made somewhere other than this resource, and where that grant lives.sourceis an entity reference. A grant held customer-wide is spelled as the bare domain token with no trailing separator —"twin"for the asset capabilities a twin reports — which is where an administration UI has to go to change them.