When a project deletion is requested, meshStack immediately removes every user and group role assignment on the project. If an administrator then denies the deletion, the project returns to active and its tenants are reinstated — but the roles are not. The project comes back empty, and someone with workspace-level rights has to add every member again by hand. They also have to know who held which role beforehand, since nothing in the restored project records what was there.
We'd like a denied project deletion to leave the project exactly as it was before the request:
  • Roles restored — every user and group role assignment on the project is reinstated, with its original role and expiry date
  • Cloud access restored — the reinstated assignments are replicated, so application teams regain access to the project's tenants in the cloud platforms
Created by Fabian Muscariello
·