Used the existing HTTP client dependency for the single server-side verification POST, including timeout handling and mocked success, failure, and transport-error cases in tests.
- What worked
- Simple POST with timeout kept verification isolated to login and easy to mock for fast database-free tests.