Application boundary#
These paths belong to your YAADMIN installation. They are not callable product-website APIs. Authenticated mutations require a session-matched X-CSRF-Token unless the route is public. Handler-local error codes are not exhaustive downstream schemas.
Verified routes#
4 routes
GET/roles
Roles page.
Verified route registration · handler roles_page. Some definitions may be partially redacted; no missing fields are inferred.
POST/api/security/roles
Create role.
Request fields
| Field | Verified definition |
|---|---|
name | str = Field(min_length=1, max_length=120) |
description | str | None = Field(default=None, max_length=1000) |
Verified route registration · handler api_create_role. Some definitions may be partially redacted; no missing fields are inferred.
PUT/api/security/roles/{role_id}
Update role.
Request fields
| Field | Verified definition |
|---|---|
description | str | None = Field(default=None, max_length=1000) |
Verified route registration · handler api_update_role. Some definitions may be partially redacted; no missing fields are inferred.
PUT/api/security/roles/{role_id}/permissions/{permission_id}
Update role permission.
Request fields
| Field | Verified definition |
|---|---|
effect | PermissionEffect | None = None |
Verified route registration · handler api_update_role_permission. Some definitions may be partially redacted; no missing fields are inferred.