This was never used, so let's get rid of it.
request.code
channel.code
The two are equivalent, but really we want to check the HTTP result that got returned to the channel, not the code that the Request object *intended* to return to the channel.
Authentication is done by checking a shared secret provided in the Synapse configuration file.