{"status":"ready","project_id":"e725c520-8c55-46bf-8cc2-964ed78c039e","name":"Jam Session","description":"Make music with friends","project_url":"https://make.virtualmatter.ai/projects/jam-session-n4yfwcrv","player_url":"https://play.virtualmatter.ai/p/jam-session-n4yfwcrv","thumbnail_url":"https://make.virtualmatter.ai/api/v1/montages/e725c520-8c55-46bf-8cc2-964ed78c039e/images/Thumbnails/thumbnail-1787311679251.png","html":"<div style=\"width:100%;height:85dvh;min-height:540px\"><iframe src=\"https://play.virtualmatter.ai/p/jam-session-n4yfwcrv\" title=\"Jam Session\" style=\"display:block;width:100%;height:100%;border:0\" allow=\"clipboard-read; clipboard-write; fullscreen; cross-origin-isolated\" allowfullscreen></iframe></div>","required_response_headers":{"Cross-Origin-Opener-Policy":"same-origin","Cross-Origin-Embedder-Policy":"require-corp"},"instructions":"Embed this existing Virtual Matter player in the user's existing website, preserving its design.\nUse the canonical player URL, never an external_site_url or a session-specific URL.\nGive the iframe a title, display:block, width:100%, height:100%, border:0, allowfullscreen,\nand allow='clipboard-read; clipboard-write; fullscreen; cross-origin-isolated'. Do not sandbox it.\nGive its real wrapper an explicit responsive height (85dvh with min-height:540px by default).\nAdapt placement and height to the user's request; avoid the browser's intrinsic 300x150 iframe size.\nThe top-level HTML response MUST send Cross-Origin-Opener-Policy: same-origin and\nCross-Origin-Embedder-Policy: require-corp. A React component or meta tag cannot set these headers.\nInspect the existing framework and host. Extend its server handler or deployment header configuration;\ndo not replace an existing app or silently migrate its framework. Static hosts can work if their host\nsupports response headers. With TanStack Start, set the headers on the existing src/server.ts response.\nCheck external fonts, images, scripts and other embeds for CORS/CORP compatibility; do not blindly add\ncrossorigin to resources whose servers do not support CORS. Preserve working site integrations.\nIf this route cannot support isolation, explain the limitation and offer a separate play page/new tab.\nThe nested Lovable editor preview may not be isolated. Show a thumbnail with an Open player link there;\nvalidate the published URL in a top-level browser tab. Check actual HTML response headers,\nwindow.crossOriginIsolated, the engine rendering and browser console errors, at desktop and phone sizes.\nDo not claim the embed works just because the iframe exists or the npm build passed.\n","guide_url":"https://make.virtualmatter.ai/embed-guide.md"}