/** * Role-Based Access Control (RBAC) Detection Patterns * Enforces proper authorization and minimum necessary principle per HIPAA */ export interface RBACPattern { id: string; name: string; description: string; severity: 'critical' | 'high' | 'medium'; hipaaReference: string; patterns: RegExp[]; negativePatterns?: RegExp[]; recommendation: string; category: string; } /** * RBAC-001: PHI Data Access Without Role/Permission Verification * Detects database queries to PHI tables without authorization checks */ export declare const PHI_ACCESS_NO_AUTHZ: RBACPattern; /** * RBAC-002: Service Role Keys in Client-Side Code * Detects privileged keys exposed to client, admin defaults, or always-admin conditions */ export declare const SERVICE_ROLE_CLIENT_SIDE: RBACPattern; /** * RBAC-003: SELECT * on PHI Tables (Violates Minimum Necessary) * Detects SELECT * queries that retrieve all columns from PHI tables */ export declare const SELECT_ALL_PHI: RBACPattern; export declare const ALL_RBAC_PATTERNS: RBACPattern[]; //# sourceMappingURL=patterns.d.ts.map