cubicweb-processing #3034623 review security model w.r.t. traceability [validation pending]
Processing cube security model specifications
Now that processing has workflows, we can define a proper security model based on them.
The general idea is that we want to ensure the traceability of study and run results, no matter who created or launched them.
Special attention should be paid to relations, which should in no way be deleted by a non manager user who has not created it, or created between one entity which he is not allowed to read and any other entity.
|closed by||#a716c25e1c5c Update permissions and add tests for traceability between Executable and Run|
|patch||Account for Run workflow in its permissions and that of related entities [folded]Update permissions and add tests for traceability between Executable and Run [applied]|