🛂 Permissions Inspector

Trusted Server never ships a permission policy. The builder of a deployment chooses the permissions.yaml baked into their compiled image, the operator of that image can overlay another, and the visitor's own signals decide the rest at runtime. This page reads such a policy document, written in the IAB Tech Lab Privacy Taxonomy's own vocabulary, and answers the question a policy owner actually has: for a visitor in a given place, with given consent signals, which Data Uses are set? Everything runs in this browser tab. Nothing is sent anywhere.

Step 1 · The policy baseline

The samples in the repository's config/permissions directory. No policy ever ships with Trusted Server: the builder bakes their chosen file into the image, the operator can overlay another, and choosing is always explicit.

Step 2 · The visitor's input

Step 3 · What the application layer gets

Data Use (IAB Privacy Taxonomy) Policy baseline For this visitor Why