The exact HTTP status and response schema for each operation come from the versioned OpenAPI contract. A network failure can happen before an API error is returned, so log the request context without logging the secret.
A successful
whoami response proves the credential was accepted by that API instance. It does not prove owner authorization or chain settlement.