COOP auth A/B — synthetic files only

Upload arm reads the fixed inventoried 64-byte CODEX fixture. Save arm is a separate positive control.

1. x.uploadFile read fixed existing synthetic canary 2. x.saveDataURL independent positive control 3. Check the most recent upload result