Infisical shipped a feature letting users grant or deny access to individual folders, extending its role-based access control system built on the CASL permissions library. The company frames this as a deceptively complex engineering effort that most customers will never notice, despite being critical to enterprise adoption.
infisical.com
· 2026-09-09
In a follow-up piece, Andrea Chiarelli argues that authorization terminology like RBAC, ABAC, PBAC, MAC, DAC, ACL and ReBAC is routinely misfiled into a single 'model' category despite answering entirely different questions. Building on an earlier essay distinguishing PBAC as an architecture rather than a model, Chiarelli proposes breaking authorization systems into five separate questions to classify them accurately instead of treating all these terms as competing alternatives.
idpro.org
· 2026-09-01