Try Bailiff in a live playground

Explore real authorization models, switch identities, run checks, and see exactly why access is allowed or denied.

No signup required. Each scenario comes with seeded data you can reset at any time.

Pick a scenario

Each scenario comes pre-loaded with users, resources, roles, and relationships. Explore, modify, and run checks.

📄

Team Docs Starter

A collaborative document workspace with teams, folders, and inherited sharing. Perfect for understanding hierarchical permissions.

FoldersInheritanceTeam SharingViewer/Editor Roles
Launch scenario
🏢

Workspace CRM

Multi-tenant CRM with workspace isolation, role-based access, and plan-gated features like bulk export and analytics.

Multi-tenantRBACFeature FlagsPlan Entitlements
Launch scenario
📂

Collab Drive

Google Drive-style file sharing with public links, organization-wide access, and nested folder permissions.

Public LinksOrg SharingNested FoldersLink Permissions
Launch scenario
🔧

Support Console

Internal admin tool where support agents get scoped read-only access and every action is audited.

Scoped AccessAudit TrailRead-only RolesAdmin Override
Launch scenario

What you can do in the playground

Every tool you need to evaluate Bailiff before writing a single line of integration code.

👤

Identity Switching

Switch between pre-seeded users instantly. See how the same resource looks to an admin, an editor, a viewer, or someone with no access at all.

Check Runner

Run authorization checks in real time. Pick a user, an action, and a resource. See the result instantly with full trace information.

🔍

Explain-Why Traces

Every check shows the full decision path. See exactly which relationship, role, or group membership granted or denied access.

🔄

Resettable Seeded Data

Modify roles, add users, change permissions. Made a mess? Reset the scenario to its original state with one click.

Ready to model your own authorization?

Book a free migration review. We'll help you map your current access control to a Bailiff model.