Execute a gated upstream request
Runs one request against the fixed upstream host for the enrolled system
(Stripe: https://api.stripe.com). Requires a valid lease id or ALLOW
token; the provided method/path/body must byte-match the lease. On any
mismatch, expired/reused lease, revoked credential, or gate error the
call fails closed with a receipt and no upstream request is made. Body
must be JSON and ≤ 1 MB; idempotencyKey is passed through to Stripe.
Request
This endpoint expects an object.
systemId
method
path
must begin /v1/
leaseId
token
ALLOW token (lease created implicitly)
body
idempotencyKey
Response
Upstream response body verbatim on success. On a fail-closed guardrail
the response is {"ok": false, "reason": ..., "upstreamCalled": false}.
Errors
400
Bad Request Error