Changelog

- Expand OpenAPI coverage across backend modules with per-service documentation files, common response/error helpers, examples, and Scalar-ready metadata.

- Protect /docs and /openapi.json behind existing session/API-token authorization, requiring at least one effective scope.

- Update Gateway product descriptions to reflect the broader infrastructure control plane scope.

- Fix Docker image update/recreate flows to reuse registry credentials, and add cleanup coverage for stale images.

- Improve logging UI loading states and remove the enabled field from log environment creation.