Sign in

This now hits the real Better Auth runtime under /api/auth. A successful sign-in should create a real auth session cookie that the next server-backed navigation can read through /api/session.