Real Application Security (RAS) Dynamic Application Roles

Hi can anyone throw some light on RAS "Dynamic Application Roles" and how they are enabled.

I am aware from documentation "Dynamic application roles might be used, for example, if there is some application privilege granted to all application users connecting during weekdays. If that criterion is met, then the application enables those application roles."

Configuring Application Users and Application Roles (

I am assuming it is controlled by ACL as these roles cannot be enabled/disabled through API? Are there any examples/snippets that could be shared.

Sorry I am new to RAS, this bit is unclear.