Requires role internal-admin. Minimum required fields validated in resources layer. Full body passed to usecase — additional fields may be accepted but are not statically defined here.
Bearer authentication header of the form Bearer <token>, where <token> is your auth token.