Hello,
It looks like the issue is with the sub (subject) claim not getting a value when the ID token is created. Locally it works because the mapping is probably fine, but in your deployed setup the OIDC provider (Super App) isn’t sending a unique identifier for the user.
Try enabling TRACE logs for openidconnectprovider in Super App. You’ll be able to see which claims are being populated, and it’ll confirm whether the sub claim is missing. That usually fixes this type of error.
Regards
Reemali