Use `Signer.activePubkeyProvider` to determine if user is signed in, instead of
`activeProfileProvider(LocalSource())`. The profile can be null while user is
already authenticated, which was hiding the "Always trust" switch incorrectly.
This keeps the switch visible for signed-in users and hidden for signed-out users,
matching the actual trust persistence capability.