Problem & Current Limitations Interactive HTML artifacts run inside a sandboxed governed by a strict Content Security Policy ( connect-src 'none' ), which correctly blocks outbound client-side API requests. However, because the host Glean...