--- id: PLAY-5 family: RT-PLAY level: extended profiles: [runtime, editor-client] posture: normative-target added: "1.0" changed: "1.0" source: https://flowdrop.io/spec/rules/rt-play/play-5 specification: FlowDrop Workflow Specification 1.0-draft licence: CC BY 4.0 --- # PLAY-5 — The session list is ownership-scoped, and an emptied filter means none *RT-PLAY (Part II) · level: extended · profiles: runtime, editor-client · added in 1.0* The failure mode this rules out is an explicit request for no sessions answered with every sibling session in the workflow. ## The rule > **Normative.** This is the rule. > > 1. A caller without authority to view any session sees only sessions they own: the ownership condition binds the list and its total count alike, on the default path and on the filtered path, so the `ids` filter can only narrow what the caller could already see. > > 2. Where the filter is present but every value in it parses away, the list answers an empty page with a total of zero; it must not fall through to the unfiltered list. ## Related rules - Names: PLAY-1 - Referenced by: PLAY-1 --- Rule identifiers are permanent and are never renumbered. This specification carries no implementation status: each implementation publishes its own standing against these rules. Licensed CC BY 4.0.