Question for the wider Ory community on Oathkeeper Rules. I'm curious how others are structuring your rules - Do you have generic catch-all rules, or are you having to be quite explicit in your rules for all endpoints?
From my own experience so far, the nature of how the rules are defined sort of prevents catch-all rules in any meaningful sense. I'd love to have generic rules that are overridden by more restrictive rulesets as necessary, but I can't do that since there is a lack of prioritization and a no-conflict policy when it comes to defining endpoint matches.