Field Manual PHP / Laravel reference
← Financial-system patterns

Authorization

Financial authorization checks ownership, capabilities, limits, and separation of duties.

What it is

Financial authorization checks ownership, capabilities, limits, and separation of duties.

When to use it

Check the operation, not just access to its screen.

Syntax

Gate::authorize("transfer", $sourceAccount);

Example

// Validate actor owns/can operate source account.
// Verify destination is allowed and currency matches.
// Approval may require a different actor from the creator.
// Recheck state under concurrency protection when applying changes.

Common mistakes

Do not accept creator/approver/owner from client-controlled input.

Related topics

AuthorizationAuthorizationAuthentication versus authorization