Interface LaravelUi5\Sdk\Impersonation\Contracts\ImpersonationServiceInterface

The impersonation domain API (F3 / sdk-impersonation-v0.9).

Two concerns, one seam:

  • the transition side (impersonableTargetsFor / canImpersonate / begin / end) — resolving and entering/leaving an impersonated actor. Every query resolves from the principal, never the current actor (D10 — no chaining).
  • the grant-management side (grant / delineate) — the write path consumed by the ui5-partners Delegations view. It enforces the structural invariants (no self-delegation, no overlapping active window); the SystemLevel ≥ LocalAdmin gate is enforced by the caller (the ui5-partners write path, D3).

Impersonation is scoped to session-backed browser/shell requests (D7): begin/end write the impersonate.partner_id session key the SdkUi5ContextFactory reads.

Methods