## Record consent

`PUT https://whatsapp.paaltech.org/api/v1/businesses/{external_id}/contacts/{id}/consents/{category}`

Record an opt-in you collected (`granted`) or an opt-out (`revoked`). Business-initiated
templates in a revoked category are refused with `recipient_opted_out`. Every change is
kept in the contact's consent history and announced as `contact.consent`. Contacts also
opt out of marketing and notifications by replying STOP, and back in with START.

Ability: `contacts.write`

### Path parameters

| Name | Type | Required | Description |
|---|---|---|---|
| `external_id` | string | yes | Your own ID for the business (Multi-SKUUL - the tenant ID). Max 191 characters. Pattern `^[A-Za-z0-9._:-]+$` |
| `id` | integer | yes |  |
| `category` | string | yes | One of: `marketing`, `notifications`, `transactional` |

### Body

| Name | Type | Required | Description |
|---|---|---|---|
| `status` | string | yes | One of: `granted`, `revoked` |
| `source` | string | null | no | Where it came from, e.g. signup_form (default api). Max 24 characters |
| `note` | string | null | no | Max 191 characters |

### Request

```bash
curl --request PUT \
  --url 'https://whatsapp.paaltech.org/api/v1/businesses/presec/contacts/2/consents/category' \
  --header "Authorization: Bearer $PAALCHAT_TOKEN" \
  --header 'Accept: application/json' \
  --header 'Content-Type: application/json' \
  --data '{"status": "granted", "source": "signup_form"}'
```

### Responses

- **200** - The contact's consent and preferences now.
- **401** - unauthenticated - missing, invalid, revoked or expired token

```json
{
  "error": {"code": "unauthenticated", "message": "A valid product token is required."}
}
```

- **403** - missing_ability, product_suspended or product_token_required

```json
{
  "error": {
    "code": "missing_ability",
    "message": "This token does not have the ability this request needs."
  }
}
```

- **404** - not_found - not yours, or does not exist

```json
{"error": {"code": "not_found", "message": "Business not found."}}
```

- **422** - validation_failed - fields are invalid; see errors.

```json
{
  "error": {
    "code": "validation_failed",
    "message": "The external id field format is invalid. (and 1 more error)"
  },
  "errors": {
    "external_id": ["The external id field format is invalid."],
    "name": ["The name field is required."]
  }
}
```

- **429** - rate_limited - over 300 requests/minute for this product

```json
{
  "error": {
    "code": "rate_limited",
    "message": "Too many requests. Slow down and retry after the Retry-After header."
  }
}
```

