The verifier accepts a hash and nothing else. A wrong hash returns not found rather than a near match, so the endpoint cannot be walked to discover documents.
Holding a signed document? Check it against its hash on the public verifier, no account needed.