Using Brand for Authorization Checks: Structuring Roles and Permissions
Is Brand something that might be used for authorization checks? If so, does somebody have a suggestion on how to structure it, if there are different roles with additionally different permissions assigned to the user?