[RFC] Changing the authorization level for /system and /model
Currently the level of authorization for /system (changing which one is the current system model or editing it) and /model (uploading a new model) is "admin"
One issue that popped up at LinkedIn focus group is the fact that in order to load a model you need to be admin and as a result you have access to everything, including the encryption layer or adding/removing users.
It seems that /system and /model should be RELEASE instead of ADMIN.
I would also like to make that entirely configurable (meaning outside the war file) so that it can be tweaked without having to build the code.