Two brands, two custom domains
Acme Shop is a public store and anyone may sign up for it. Acme Bank is a separate brand with its own customers, its own custom domain and its own account directory. The bank directory holds no shopper accounts, and the bank customer's password is generated at start-up and never printed.
- Sign in to Acme Shop, which is the link
/auth/login, asshopper@acme-shop.testwithShop-Signup-2026. - Open Acme Bank. The SDK refuses your shop session.
- Log out. Now take the sign-in link from step 1
and append
?challengeMode=popupto it yourself:/auth/login?challengeMode=popup
Open that and sign in with the same credentials. - Open Acme Bank again. You are inside it.
No session
No session cookie is present.
Which custom domain each brand uses
| Acme Shop | f12-login-shop.huntland.abiusx.com |
| Acme Bank | f12-login-bank.huntland.abiusx.com |
Each brand also answers as JSON at /shop/whoami and
/bank/whoami. Acme Bank has its own sign-in page at
/auth/login?brand=bank, which refuses the
shopper account.