I was thinking about permissions with regards to parameters, in the context of sensitive data in ecommerce package for example.
The CONTEXT attribute solves that with the addition of your "none" suggestion.