Send a message for a browser client-token chat session. The request streams flow/agent events over Server-Sent Events. turnId and submitMode are optional and let newer Persona clients suppress stale interrupted responses; older clients can omit both fields. Opt-in join accepts exactly one new user message whose id equals turnId for visitor-owned native durable agents. A new execution streams SSE; joining an existing execution returns a 202 delivery receipt without replacing its response. Retry with the same turn and message IDs.
Customer-native auth proof for the Identity Exchange. When present and the surface has a matching integration, the verified tenant/end-user replace any body-asserted tenant/endUser (which are never trusted for web-embedded callers). When Identity Exchange admission is disabled for the caller, the proof is accepted but ignored and confers no trust.