strazactl drafts check
Check documents against live state and print the verdict, storing nothing
On this page
Synopsis
Sends the documents to strazad, which checks them against live state and answers the verdict: what it refuses, what widens access, what does not work yet and what it could not check. Nothing is stored, so check also runs inside a coding agent on your login. A file is read as it is, a directory gives its top-level .yaml and .yml files by name, and - reads stdin.
strazactl drafts check -f <path>... [flags]
Options
-f, --file stringArray App, Role, PolicySet and Removal documents: a YAML file, a directory of .yaml and .yml files, or - for stdin (repeatable)
--json print the server's JSON answer, indented, and nothing else on stdout
--note string your own words for whoever reviews the draft, at most 2,000 bytes
Options inherited from parent commands
--server string strazad base URL (overrides $STRAZA_SERVER and the server you logged into)
See also
- strazactl drafts: Check, store, review and publish drafts of changes to MCP servers, roles, access rows and policy sets