sdg:Authenticated

sdg:Authenticated is the built-in role every authenticated agent holds — the broadest grantee an authorisation Rule can name without opening access to anonymous callers. The bootstrap policy grants it sdg:read over any graph: Phase 1 deliberately leaves reads open inside the authenticated perimeter, and Phase 4 narrows this with attribute-based rules.

Usage