so what do we mean when we say ids are opaque and you shouldn't extract information from them? well, you have to be careful about not extracting information that isn't actually there.
typically the warning is supposed to stop you from doing things like assuming paths such as /api or /users/username -- because not everyone is going to assign the same resource names in the same ways.
we might infer every resource name starting with /~a/ is owned by me, because that's "my user folder". maybe not