1
Step 1: Enter the embed URL (Cloud only)
Pick the subdomain you’ll embed in your website (e.g. 
flows.acme.com). This URL will be visible inside workflows and is the origin the iframe loads from.
2
Step 2: Verify the DNS records (Cloud only)
Add the records shown in the dashboard at your DNS provider. They cover hostname routing, ownership, and SSL. We detect them automatically — verification usually completes within a few minutes.
Once all records are detected, the domain status switches to Active and you can move on.

3
Step 3: Add allowed websites
List the origins that are allowed to load your embed in an iframe (e.g. 
https://app.acme.com). All other origins are blocked by the browser.
4
Step 4: Add a signing key
Generate the signing key used to authenticate users. This step is covered in detail in Provision Users.