Optional
allowedThe strategies that are allowed for checking whether or not the user has one of the specified roles.
If not set, this allows any strategy.
The target entity that needs to be checked to belong to the user.
The key of the id path parameter in the endpoint.
The key on the target, that defines to which user it belongs.
Metadata for the @Auth.belongsTo decorator.