Bilingual, multi-branch, scope-enforced, fully audited customer support. Generated from the JSDoc blocks above the routes themselves — a route with no block is absent here rather than documented with a guessed shape.
Every read and write applies a scope predicate over the caller's branch and
department. A record outside that scope is indistinguishable from one that
does not exist: the API answers 404, never 403, and
the body is byte-identical in both cases. Do not build retry or
reconciliation logic that reads a 404 as deletion.