Skip to content

normalisePrincipals

function normalisePrincipals(principals): ReadonlySet<string>;

Defined in: src/token-identity.ts:293

Validate the introspector allowlist, returning it as a set.

Throws when the allowlist is missing or empty. There is no permissive default: “any authenticated caller” is precisely the configuration that turns introspection into an open oracle, so it cannot be reached by omission.

Parameter Type
principals Iterable<string, any, any> | undefined

ReadonlySet<string>