Record one PEWC consent proof
Append ONE prior-express-written-consent (PEWC) proof to the append-only consent ledger. signatureType is web_form or imported_attested. An imported_attested disclosure is HARD-BLOCKED (422) unless its verbatim text authorizes an artificial/prerecorded voice AND an autodialer/automated dialing system (the FCC 24-17 AI-voice requirement) — this is necessary, not sufficient (counsel owns the copy). A web_form record is refused (422) until the org’s PEWC disclosure copy is counsel-approved (pewcDisclosureApproved) and the org’s seller identity exists. Recording a consent proof does NOT, by itself, un-block any marketing dial — gating dials on consent is a later release. Use this to append ONE proof. To load many attested rows at once (all-or-nothing), use importOutboundConsentRecords (POST …/import) instead.
Authorizations
Flowyte secret API key (Authorization: Bearer flowyte_sk_live_…). Scope-gated; is scoped to your organization — a key can never reach another tenant. The listed scopes in each operation's apiKey requirement are the scopes that key must hold. The tokenUrl is nominal: keys are minted in the dashboard.
Body
The consumer number; normalized to E.164.
web_form is A6-gated on the org approved disclosure; imported_attested is A3-validated.
web_form, imported_attested pewc (default) | express
consumer (default) | business
PEWC element (c); a web_form record falls back to the org seller name.
Verbatim consent wording. Required (and AI-voice-authorizing) for imported_attested.
hosted_form | tenant_form | csv_import | api (default api).
URL / IP / form id (provenance).
RFC3339 consent timestamp; stored as signedAt (the consent date).
RFC3339 signature date; preferred over capturedAt.
RFC3339 optional consent expiry.