pub fn get_expiring_entries_for_user(
conn: &Connection,
within_days: u32,
read: Option<&Expr>,
) -> Result<Vec<Value>, String>Expand description
Like get_expiring_entries but first filters the vault to the entries the
user is permitted to read. Prevents non-owner sessions from learning about
the expiry (and full contents) of secrets outside their RBAC scope.