Skip to content

grantAuthenticate

function grantAuthenticate(keys): AuthenticateFn;

Defined in: src/http/grant-auth.ts:80

Accept the framework’s own sealed grants as bearer credentials.

The resulting AuthContext has domain "grant", the grant’s principal, and claims {grant_id, scopes, purpose} – and no auth_time, so a grant-authenticated caller cannot issue_grant: grants never mint grants.

Parameter Type
keys GrantKeys

AuthenticateFn