How does eProtect iFrame prevent it's abuse

Question asked by adesh.k on Nov 21, 2017
Latest reply on Dec 19, 2017 by daniperea

As per my understanding from the documentation, the only required parameters to load the iFrame on your page is paypageId and the appropriate script eProtect src link. All these parameters are available in the javascript, therefore client facing. Thus, any user can find these from console and obtain the iFrame in their website and abuse the system. How is this abuse prevented?