An iframe html-tag just punches a hole in your page without thinking twice about the contents it is showing. Browsers tend to restrict this, and applications like Mendix are usually not very keen on getting shown in an iframe. See this docs.mendix.com “https://docs.mendix.com/developerportal/deploy/running-in-iframe#1-introduction” for more info. You might need to add a samesite-cookie