When true, indicates that the current user result is as assumed user. This can only be
true if you've configured user assuming in BackendAuthClient.
This should be merged into your own response headers. It usually contains auth cookie duration refresh headers.
The retrieved user.
Output from
BackendAuthClient.getSecureUser().