Downloads the file at the given path, as returned by POST /pcm/classify or POST /pcm/classify/result. This is a plain, unsigned endpoint - the path query value is used as-is (with path-traversal characters stripped), not a signed/expiring token. Any authenticated merchant/partner/admin caller can request any path, including one belonging to a different account - there is no ownership check on this endpoint today.