問題文
A requirement states that an application may write new values under a versioned store path and read them back, but must never be able to remove them and must never be able to see what other keys exist at that level. Which set of capabilities matches?
選択肢
- read and update only, because update implies the initial create.
- create, read, and update on the path, with delete and list left out.
- create, read, update, and an explicit deny on delete and list, since leaving a capability out only makes it undefined rather than forbidden.
- read, update, and patch, with create left out because the versioned store treats a first write as a partial update of an empty record and therefore needs patch rather than create.