FGA documentation was used to design workspace-level access checks and resource discovery so agents would only see assigned workspaces. The service was not configured or called live.
- What worked
- Resource-specific checks and discovery mapped cleanly to the assignment and least-privilege requirements.