Negative test : invalid s_hash in id_token
We need to add an invalid state hash value to the id_token from the Authorization Endpoint.
Then verify that the client stops the call from continuing.
This relates to https://gitlab.com/fintechlabs/fapi-conformance-suite/issues/414 (edited)