bito-code-review[bot] commented on PR #44650:
URL: https://github.com/apache/superset/pull/44650#issuecomment-5832507208

   <!-- Bito Reply -->
   Yes, the behavior described is expected and is explicitly noted in the 
updated documentation within the PR. The PR changes how global guest RLS rules 
are injected: they are now applied to tables read inside sub-queries (such as 
scalar sub-queries, `IN`, or `EXISTS` clauses) within virtual datasets. 
   
   As noted in the updated `UPDATING.md` file, if a sub-query reads a dataset 
that lacks a column referenced by a global rule, the query will fail with a 
column-not-found error. This is a deliberate change to ensure that RLS rules 
are enforced consistently, even within sub-queries, rather than silently 
ignoring them or failing to apply them correctly.
   
   **UPDATING.md**
   ```
   If a sub-query reads a dataset that lacks a column the rule references, the
   query now fails with a column-not-found error instead of reading rows the 
rule
   ```


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to