Skip to main content
Embed origins are the sites permitted to frame the Agentcard wallet embed (the Wallet SDK’s frame-ancestors). The list is configuration, not a credential: origins end up verbatim in a public CSP header. It is empty by default, in which case the embed only renders inside Agentcard’s own surfaces. Origins must be HTTPS. http://localhost and other loopback hosts are allowed for local development. Anything with a path or query is reduced to its origin.

The embed origins object

Endpoints