{#if !onLatest}
windmill-client
SDK, authenticated as the viewer (unlike runnables, which run on behalf of the
publisher). Each viewer is asked to approve the scopes below before the app runs. Grant only
what the app needs: its code — or an XSS bug in it — can use them as that viewer. Add
windmill-client to the app's dependencies to import it; it configures itself from
the token handed to the bundle.
windmill-client versions
cannot do. An app bundled before this Windmill version fails with a CORS error until you deploy
it again, which re-bundles it against a current client.
wm_coep flag