Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

as far as I understand this would only work for users who don't have access to "deleted" rows. Are access rules a good way to handle this? Serious question. My solution would be to have views as "guards" for every table.


Views also work.

I don't understand what you mean re "access". RLS is what removes access to those rows, that's the point of RLS.

In postgresql, anyways, superusers aren't subject to RLS and the table owner, by default, isn't either. But RLS can be enforced for the table owner by a single alter statement.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: