Skip to main content
PATCH
Update browser profile

Authorizations

Authorization
string
header
required

Opaque vls_ browser token, valid for 30 days unless revoked. Read-only REST access. The UI stores it in a host-only HttpOnly SameSite=Lax cookie; it never reaches browser JavaScript. Key administration and MCP reject this token.

Body

application/json
name
string
required
Required string length: 1 - 120

Response

Update the root account display name using a browser session. Email and password remain environment-managed. Health records are unaffected.

name
string
required
Required string length: 1 - 120
email
string<email>
required
Pattern: ^(?:[A-Za-z0-9_'+\-]+\.)*[A-Za-z0-9_'+\-]*[A-Za-z0-9_+-]@(?:[A-Za-z0-9][A-Za-z0-9\-]*\.)+[A-Za-z]{2,}$
preferences
object
required

Display preferences default to day-short-month-year, 24-hour and UTC. Saved choices and recorded dates remain unchanged.