- Shipped
- September 17, 2026 at 3:33 AM UTC
- Author
- Kamo
- Commit
- 868fb0e
GET /api/email/shared-mailboxes (and /my-access, create, update) return SharedMailboxEntity itself to any session in the organization. Until the library's credential guards (kamo-shared-library, same change set) each mailbox in that list held the encrypted IMAP username and password the service logs in with; no screen read them. This build picks up those guards. **************** proves they hold through this service's own ObjectMapper and that the rest of the body is intact.