Best practices: least privilege, consent, logging, CSP, and network access.
Security and privacy best practices for Apps SDK development, covering principles like least privilege, explicit user consent, and defense in depth. The guide addresses data handling, prompt injection prevention, write action security, and network access restrictions within the sandboxed iframe environment.