pub struct TenantClaims {
pub sub: String,
pub exp: usize,
pub company_id: Option<Uuid>,
pub branch_id: Option<Uuid>,
pub typ: Option<String>,
}Expand description
The access-token claims a guarded surface trusts.
company_id is REQUIRED to pass the guard — a token without it is rejected with 401. branch_id is
optional, for deployments that do not model an org tree. typ is checked when present:
anything other than "access" is refused, so a refresh token never passes as an access
credential.
Fields§
§sub: StringSubject (the authenticated user/principal id).
exp: usizeExpiry (seconds since epoch) — standard JWT claim, validated.
company_id: Option<Uuid>The company this token acts for. Absent → the guard rejects the request.
branch_id: Option<Uuid>The branch this token acts for, when modelled.
typ: Option<String>Token purpose. Absent on tokens minted before this field existed (accepted); a present
value other than "access" — e.g. a refresh token — is refused.
Trait Implementations§
Source§impl Debug for CompanyClaims
impl Debug for CompanyClaims
Source§impl<'de> Deserialize<'de> for CompanyClaims
impl<'de> Deserialize<'de> for CompanyClaims
Source§fn deserialize<__D>(
__deserializer: __D,
) -> Result<CompanyClaims, <__D as Deserializer<'de>>::Error>where
__D: Deserializer<'de>,
fn deserialize<__D>(
__deserializer: __D,
) -> Result<CompanyClaims, <__D as Deserializer<'de>>::Error>where
__D: Deserializer<'de>,
Deserialize this value from the given Serde deserializer. Read more
Source§impl Serialize for CompanyClaims
impl Serialize for CompanyClaims
Source§fn serialize<__S>(
&self,
__serializer: __S,
) -> Result<<__S as Serializer>::Ok, <__S as Serializer>::Error>where
__S: Serializer,
fn serialize<__S>(
&self,
__serializer: __S,
) -> Result<<__S as Serializer>::Ok, <__S as Serializer>::Error>where
__S: Serializer,
Serialize this value into the given Serde serializer. Read more
Auto Trait Implementations§
impl Freeze for CompanyClaims
impl RefUnwindSafe for CompanyClaims
impl Send for CompanyClaims
impl Sync for CompanyClaims
impl Unpin for CompanyClaims
impl UnsafeUnpin for CompanyClaims
impl UnwindSafe for CompanyClaims
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
impl<ST, DT> CastableFrom<ST, Initialized, Initialized> for DT
impl<ST, DT> CastableFrom<ST, Uninit, Uninit> for DT
impl<T> DeserializeOwned for Twhere
T: for<'de> Deserialize<'de>,
Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
Source§fn in_current_span(self) -> Instrumented<Self> ⓘ
fn in_current_span(self) -> Instrumented<Self> ⓘ
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
Converts
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
Converts
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read more