b6d7f154ad
Previously only CreateRole/UpdateRole/DeleteRole checked specific permission keys. Now every endpoint enforces its corresponding permission: ListRoles/GetRoleRoutes/GetRolePermissions → rbac:roles:read ListUsers/ListRoleUsers/GetUserRoles → rbac:users:read AssignUserRoles/RevokeUserRole → rbac:user_roles:write UpdateRoleRoutes → rbac:role_routes:write SaveRolePermissions → rbac:role_permissions:write GetRoutePermissions → rbac:permissions:read