Portfolio
ORIGINAL PROJECTBACKEND · AUTHORIZATION & SECURITYFIVEM · 2026
AUTHORIZATION / HIERARCHY / AUDITING

TBC
Perms.

I developed a centralized authorization system for FiveM, with permission hierarchies and inheritance, role-based rules, access expiration, auditing and selective caching. The system centralizes access decisions on the server and integrates with ACE.

FiveMJavaScriptLuaMySQLReact
Open demo

Problem, objective
and implementation.

01 / Problem

Distributed rules that were difficult to audit

Different resources needed consistent permission checks, including for offline characters, without duplicating hierarchies and access rules.

02 / Objective

A central source of authorization

Bring groups, inheritance, direct permissions, job and gang assignments, expiration and auditing into a single service.

03 / My contribution

Architecture and full stack development

I designed the database, permission compiler, cache, ACE bridge, exports for other resources and the React administration panel.

Key features

What the system delivers.

  • Group hierarchy and inheritance
  • Allow, deny and minimum levels
  • Direct permissions with expiration
  • Job and gang assignments
  • Tracing the source of access decisions
  • Change auditing
Technical decisions

How risks were addressed.

SecurityServer-side authorization

The NUI requests operations, but the server revalidates administrative permissions, input and target before any mutation.

PerformanceSelective, versioned caching

Only online players retain compiled permissions. Changes increment versions and recompile only affected characters.

ChallengeCompatibility without duplicating rules

The ACE bridge synchronizes principals at runtime, while the custom engine preserves inheritance, deny rules and traceability.

Clear operations for
complex rules.

The original panel brings groups, users, direct permissions, jobs, gangs, diagnostics and auditing into a single FiveM administration interface.

Project preview

The demo shows the original interface in Brazilian Portuguese.

One access decision,
multiple safeguards.

From a panel action to the response returned to another resource, each layer has a defined responsibility. Select a layer to explore the details.

01 / Management and diagnostics

React Panel

The panel brings together eight administrative areas for groups, users, assignments, diagnostics and auditing. The NUI uses a generic transport, but every operation is authorized and validated again on the server.

  • Search and edit online or offline characters
  • Batch operations return individual results for each target
  • Diagnostics show the source of permission decisions
Modules
8 administrative areas
Transport
NUI → callServer
Access
Validated on the server
CSSJavaScriptReactVite