This document describes how you can get the right information to effectively use oslopolicy-checker. The tool requires a token which is evaluated by the oslo.policy enforcer object. You can do this easily by
exporting a cloud profile and using python-openstackclient.
➜  ~ cat /etc/openstack/clouds.yaml 
clouds:
  devstack-system-admin:
    auth: