Currently, AtPop only supports using a certificate to create a client assertion for acquiring an app token. It needs to be updated to rely on the CustomSignedAssertionProvider, which allows users to provide a signed assertion based on any credential description.