I have discussed the privilege check implementation thorugh this following talk thread. Please use it to get more information about the REST Previlege check.
@darius, I have updated the PR with the privilege check implementation. Can you please take a look at here[1]