A stand-in host application. It mints a Connect Token from its own backend, opens the widget, and logs the callbacks it receives — which is all a host page ever sees of the connection. Everything the server does in between shows up only on the 360 dashboard.
Sandbox connectors are enabled. Use user-ok / password-ok, MFA 123456,
or pick a scenario from the list inside the credential form to drive a specific failure.
Every onEvent, onSuccess and onError the SDK hands back.