
The current impl attempts to retrieve an instance identity token and passes it along w/o validation. For troubleshooting purposes, it would be better if the jwt received was validated and logged. Bug: 388886766 Change-Id: Idf4835f72911005d4614f0ea423deb35d0f7a325 Reviewed-on: https://chromium-review.googlesource.com/c/chromium/src/+/6318821 Reviewed-by: Gary Kacmarcik <garykac@chromium.org> Commit-Queue: Joe Downing <joedow@chromium.org> Cr-Commit-Position: refs/heads/main@{#1427346}