- Shipped
- September 29, 2026 at 12:58 AM UTC
- Author
- Kamo
- Commit
- f7441ed
GET /api/security/members/{id} names sex (FEMALE, MALE or null) only to a caller who may read it (MemberSexAccess, spec D3); the key is absent for anyone else. PUT refuses a bad value (400 field sex) and a caller who may not write it (403 NOT_ALLOWED field sex) before anything is written, sets it, and audits a change by someone other than the member: an AI's with the values, a person's without them. Member creation reads sex from the body for any record through the same MemberSexWire.
