Handles `GET /v1/control/verification-sessions/{session_id}/evidence/{kind}/preview`.
Errors
Returns 401 without a session, 403 for an API key or a role without
VERIFICATIONS_READ, 404 for a session this tenant does not have, a
kind that is not selfie or document, evidence that was never
submitted or a page it does not have, 409 while the session is being
evaluated, 410 for evidence that is expired or purged, 422 when no safe preview can be made, and 503 when the
converter, a store or the audit trail cannot be reached.
Authorizations
A signed-in reviewer's session. httpOnly and SameSite=Lax; set by POST /v1/control/sessions and only usable once the second factor is met.
Query Parameters
The page, counting from one. One when omitted.
x >= 0Response
One page as a bounded JPEG, never the original upload. Recorded in the audit trail.
x >= 0
