Authorization
Financial authorization checks ownership, capabilities, limits, and separation of duties.
What it is
Financial authorization checks ownership, capabilities, limits, and separation of duties.
When to use it
Check the operation, not just access to its screen.
Syntax
Gate::authorize("transfer", $sourceAccount);Example
// Validate actor owns/can operate source account.
// Verify destination is allowed and currency matches.
// Approval may require a different actor from the creator.
// Recheck state under concurrency protection when applying changes.Common mistakes
Do not accept creator/approver/owner from client-controlled input.