- Shipped
- October 11, 2026 at 8:25 AM UTC
- Author
- Kamo
- Commit
- a87c744
Spec §5.5, D6: reads by CONFIGURE_SYSTEM, MANAGE_ACCESS_RULES, VIEW_ACCESS_LOGS or MANAGE_AI_WORKFORCE (or an open god window); edits by CONFIGURE_SYSTEM or a god window. The defaults answer with stored:false until the first PUT inserts the row. Each sent field is validated (400 {field, reason:INVALID}); the upsert is its own @Transactional @RetryOnDbConflict bean; after it commits, DISCLOSURE_SETTINGS_CHANGED goes to the access log, HIGH on an enforcement-mode change, otherwise MEDIUM, listing only the changed fields. updatedByName follows the charter's display-name rule (CharterService.displayName, now public). OrgDisclosureSettingsReader is a bean here.
