A deep dive into why ChatGPT and MCP apps use a double iframe mechanism to render third-party UI inside conversational agents. The talk explains the security constraints imposed by Content Security Policy (CSP), why simple approaches like srcdoc or direct iframe src fail due to origin sharing or CSP whitelist scaling issues, and how the double iframe pattern solves isolation while enabling per-app origin separation. The speaker also introduces Skybridge, an open-source framework built on top of the MCP app SDK that includes a CSP inspector tool to help developers catch missing domain declarations before submitting to the ChatGPT app store.
•20m watch time
116 Impressions