The system operates on a zero trust model: access must be explicitly granted—there is no inheritance or default access, and can be revoked at any time.
Permissions are granted on a pre-determined access_level, with every relationship recorded in a centralized access registry. These access_levels clearly define who can:
- View & Access Folders/Files
- No View & No Access