Database reference
Tables Account reads and writes.
Permission semantics
GET /me/features builds the map from FeatureRegistry keys for the caller's audience. A missing user_feature_permissions row is treated as enabled. Super-admin feature admin endpoints that write this table are out of scope for Account.