generated: '2026-08-13' method: searched source: >- https://totalexpert.freshdesk.com/support/solutions/articles/22000289843-iframe-integration-guide -> https://totalexpert-trainingteam.s3.us-east-2.amazonaws.com/TE_DeveloperGuideResources/Iframe+Integration+Guide.pdf provider: Total Expert providerId: total-expert description: >- Total Expert ships no JavaScript element library or web-component package. Its client-side embedding story is a hosted, token-bearing iframe: partners authenticate a Total Expert user with the OAuth 2.0 authorization-code flow and then embed Total Expert's own CRM pages through a provider-hosted helper page. There is nothing to install from a registry — see packages/total-expert-packages.yml, which records zero first-party SDKs. families: - name: Embedded CRM (iframe) kind: hosted-embed description: >- Embeds the live Total Expert platform inside a partner application. The partner points an iframe at a Total Expert-hosted helper page and supplies the end user's access token; the helper manages its own inner iframe against apps.totalexpert.net and forms the Authorization header on every request. loader: https://apps.totalexpert.net/static/iframehelper.html distribution: hosted page (no npm/CDN package; nothing to install) parameters: - name: token required: true description: The end user's OAuth 2.0 access token. - name: route required: false description: URI-encoded CRM route to display initially inside the helper's iframe (e.g. loan%2Flist). example: https://apps.totalexpert.net/static/iframehelper.html?token=REDACTED_TOKEN&route=loan%2Flist auth: flow: authorization_code scope: crm authorize_url: https://totalexpert.net/authorize token_url: https://public.totalexpert.net/v1/token note: >- The Iframe Integration Guide names https://totalexpert.net/authorize as the authorize page for this flow, while the Vendor OAuth Integration Guide and the derived OpenAPI use https://public.totalexpert.net/v1/authorize. Both are published by Total Expert; the iframe path is the SSO-facing one. token_lifetime: access token 1 hour, refresh token 2 weeks sso: >- A service-provider identifier may optionally be supplied on the authorize request to log the user in automatically. domains_required: - totalexpert.net - public.totalexpert.net - apps.totalexpert.net constraints: - The token request must be made server-side; CORS rules cause browsers to refuse it. - The partner's redirect URI must be pre-registered with Total Expert against the client ID/secret pair. - name: Rate quote / pricing presentation surfaces kind: hosted-page description: >- Branded consumer presentations generated by the AI Scenario Assistant are delivered as hosted pages with a short link suitable for SMS, and surface in the Rate Quotes interface. Announced in the 2026 August release; no embed contract is published for third parties. loader: null distribution: hosted, provider-generated links only source: https://totalexpert.freshdesk.com/support/solutions/articles/22000296279-2026-august-release-notes not_published: - No web-component / custom-element library. - No embeddable form, checkout, or field-level element library. - No hosted dashboard embed SDK (the iframe helper is the whole surface). x-evidence: fetched: '2026-08-13' urls: - {url: 'https://totalexpert-trainingteam.s3.us-east-2.amazonaws.com/TE_DeveloperGuideResources/Iframe+Integration+Guide.pdf', http_status: 200} - {url: 'https://totalexpert.freshdesk.com/support/solutions/articles/22000289843-iframe-integration-guide', http_status: 200}