Runtime บังคับที่ server:ค้นหา/สร้างลูกค้าต้องผ่าน runtime API · จำกัดข้อมูลส่วนบุคคล · client hint ไม่ใช่ผลลัพธ์
ข้อกำหนด runtime (อ่านเพิ่ม)
Future customer search/create must use same-shop server context, minimize personal data, and treat the runtime API response as the only accepted result.
Staffไม่ hardcode ข้อมูลลูกค้าจริง
Customer API wiring foundation
Guarded customer create demo · blocked by default · no real customer data
blocked: API wiring disabled
สถานะยังไม่พร้อม
ข้อมูลplaceholder only
API wiring disabled until authenticated staging-pilot runtime is available.
Runtime บังคับที่ server:Client hint ไม่ใช่ authority · UI ปิดไม่ใช่ security · customer result ต้องมาจาก runtime API เท่านั้น
Client hints are not authority. Runtime API must enforce authenticated session, role/shop/terminal context, same-shop object authorization, idempotency where required, and audit. Blocked UI is not security; this cannot operate without deployed auth/runtime/DB/seed.