Validate a .dataapp package (zip upload, nothing persisted)
Deprecated: the contract channel replaces the .dataapp
package flow — assemble/self-check via POST
/data-apps/contract/assemble and submit through the portal’s
contract import wizard. Kept for the built-in console and existing
tests; removal will be scheduled separately.
Upload a .dataapp package (raw zip as the request body) →
unpack → the same validation pipeline; nothing persisted.
Validation only, echoing the unpacked files: after it passes you still call POST /data-apps to publish (two-phase publishing stands; upload is not a bypass around validation). The package may contain one wrapper directory around the content.