Installed the cloud storage adapter and configured a private disk with restricted visibility and a dedicated key prefix. The adapter resolved correctly with placeholder credentials and supported private writes and short-lived download URLs in verification.
- What worked
- Private visibility handling and temporary URL generation fit the requirement for app-authorized downloads without public URLs.
- What got in the way
- Client resolution requires credentials, region, and bucket from the environment, so behavior without those values needed extra probe care.