Tests Architecture A (Anonymous LOA-0), Architecture B (Registered LOA-2 Discovery), and Architecture B (Registered LOA-4 Explicit) signing flows.
Origin:
Target: http://localhost:3000
Timestamp:
Name: TestContract.pdf
Hash: a3f7c2d8e9b1045f6a8d3c7e1b9f4a2c5d8e7f1b3a6c9d2e5f8a1b4c7d0e3f6
LOA-4 requires a pre-registered authenticator bound to the test email. The backend resolves the credential internally; the test RP does not need to know it.
...No token required. WebAuthn discovery mode. User picks their passkey from the browser picker.
RP authenticated via token. Discovery mode (same as A). Token contains only RP identity + document hash.
KYC-verified RP + credential-bound token. Signa resolves user by email internally.
Explicit allowCredentials — no picker, no ambiguity, no fraudster substitution.