This release introduces a change to identity management. Creating and updating identities is no longer handled through the client entity endpoints. Identity operations are now handled through dedicated identity routes.
All deprecated fields and compatibility behaviors will be permanently removed after October 2, 2026.

API Routes

The following table shows how identity creation and updates should be migrated from the client routes to the new identity routes. The client entity endpoints should no longer be used to create or update identities.

Verified Identities

Once an identity has been verified, it becomes restricted from general modification. A verified identity is identified by a non-null verifiedAt value. After verification, only expiresAt can be updated. Any attempt to modify other identity fields will be rejected.