Identity of the public web-widget instance a guest session was minted for, carried on
UserInfo and sourced from the verified session token's mj_widget_id claim. Lets a
privileged server-side dispatch resolve the AUTHORITATIVE pinned support agent (and other
per-widget configuration) from the trusted token rather than from client-supplied arguments —
the backstop that lets a widget guest run only its widget's pinned agent. In-memory, per-session;
not a database/GraphQL field.
Identity of the public web-widget instance a guest session was minted for, carried on UserInfo and sourced from the verified session token's
mj_widget_idclaim. Lets a privileged server-side dispatch resolve the AUTHORITATIVE pinned support agent (and other per-widget configuration) from the trusted token rather than from client-supplied arguments — the backstop that lets a widget guest run only its widget's pinned agent. In-memory, per-session; not a database/GraphQL field.