Diagnose RBAC data and Kessel/SpiceDB replication issues in OpenShift ephemeral namespaces (platform role child relationships, principals, permissions). Use when debugging ephemeral envs, crc-eph, missing SpiceDB tuples, empty principals, or Postgres vs Kessel mismatches.
Call RBAC internal API endpoints in stage or prod via Turnpike (same routing as the relationship skill). Use when invoking /private/api/ utils, tenant, relations, inventory, disaster recovery, or integration endpoints.
Run Zed permission checks against SpiceDB in Kessel stage. Use when checking RBAC permissions in SpiceDB, verifying group membership, workspace access for users, or running zed permission check/lookup-resources against stage.
AGENTS.md instructions for project-kessel/insights-rbac, covering ai agent guidance for insights-rbac, domain guidelines index, context index, common commands and testing.
Claude Code instructions for project-kessel/rbac-config, covering claude.md, claude code-specific workflow, pre-pr validation checklist, build and test commands and ci pipeline awareness.
Instructions for project-kessel/docs, covering claude code configuration, build and development commands, development workflow, before committing and pre-commit hooks.