GET /api/auth/effective-access/summary's response shape (internal/authz/summary.go's
handleSummary — the EffectiveAccessSummary contract, apiVersion 1). moduleKey is always ""
(the summary composes across ALL modules at once); rowScopes/fieldPolicies are always
empty arrays in this v1 (segment-rule compilation and field-policy evaluation are not built
yet).
GET /api/auth/effective-access/summary's response shape (internal/authz/summary.go's handleSummary — the EffectiveAccessSummary contract, apiVersion 1).
moduleKeyis always "" (the summary composes across ALL modules at once);rowScopes/fieldPoliciesare always empty arrays in this v1 (segment-rule compilation and field-policy evaluation are not built yet).