Reimplement user (de)verification as REST endpoints
What does this MR do?
Reimplement user verification and user deverification as REST endpoints
How confident are you it won't break things if deployed?
I found no problems during testing.
Links to related issues
How to test
Verify users, deverify users (some of which have future pickups planned), with and without proper permissions to do so.
- having an API test would be good.
- no unrelated changes
- asked someone for a code review
- set a "for:" label to indicate who will be affected by this change
- use "state:" labels to track this MR's state until it was beta tested
- added an entry to CHANGELOG.md
- release notes: