OpenFGA — Payment authorization — POC
The stakes. In fintech, authorization IS the internal control: separation of duties (whoever initiates ≠ whoever approves), limits, scopes.
What I prototype
- OpenFGA relations:
initiator,approver,vieweron atransaction/wallet. - Separation of duties (SoD) enforced by the model, not by application code.
- Per-market/account scopes and audit trails of access decisions.
Stack
OpenFGA · NestJS · PostgreSQL · Payments
POC — compliance test bed, not deployed to production.