Clean-room endpoint with strict field whitelisting. Only the account field is accepted.
Non-super users must have access to both the source institution and the target account.
Passing account: null detaches the institution from its parent account — super users only.
JWT token passed in x-access-token header
Institution ID to reassign
Target account ID (or null to detach — super-only)