Skip to content

Conversation

@mintlify
Copy link
Contributor

@mintlify mintlify bot commented Dec 11, 2025

Updated the OpenAI SDK Architecture documentation to reflect the more permissive CSP configuration introduced in PR #1059. Both CSP modes now allow all https: sources, simplifying widget development but reducing security isolation.

Changes:

  • Updated CSP header generation code example to match new implementation
  • Changed CSP mode descriptions to reflect that both modes are now permissive
  • Corrected file paths from server/routes/mcp/chatgpt.ts to server/routes/apps/chatgpt.ts
  • Added notes about widget CSP metadata not being enforced
  • Updated security best practices to acknowledge permissive CSP configuration

Files changed:

  • docs/contributing/openai-sdk-architecture.mdx - Updated CSP documentation, file paths, and security notes

@dosubot dosubot bot added the size:M This PR changes 30-99 lines, ignoring generated files. label Dec 11, 2025
@dosubot dosubot bot added the documentation Improvements or additions to documentation label Dec 11, 2025
@matteo8p matteo8p force-pushed the docs-update-from-inspector-pr-1059 branch from 733bfcf to 47cc1b6 Compare December 30, 2025 22:41
@dosubot dosubot bot added size:XXL This PR changes 1000+ lines, ignoring generated files. and removed size:M This PR changes 30-99 lines, ignoring generated files. labels Dec 30, 2025
@matteo8p matteo8p closed this Jan 3, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

documentation Improvements or additions to documentation size:XXL This PR changes 1000+ lines, ignoring generated files.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants