Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update browser default Referrer-Policy #644

Closed
wants to merge 2 commits into from
Closed

Update browser default Referrer-Policy #644

wants to merge 2 commits into from

Conversation

michaelkennedy
Copy link

The default policy has been changed to strict-origin-when-cross-origin.

See w3c/webappsec-referrer-policy#142

The default policy has been changed to strict-origin-when-cross-origin.

See w3c/webappsec-referrer-policy#142
@baknu
Copy link
Contributor

baknu commented Dec 2, 2021

Many thanks for your feedback! This new default policy is in the Editor's Draft , but not yet in the Candidate Recommendation. Correct?

Do you know if browsers have already changed accordingly?

For reference:

Btw we keep a separate private repo with NL and EN content. So if a content change is needed, we will apply it there.

@michaelkennedy
Copy link
Author

My understanding is the current browser default is strict-origin-when-cross-origin, but I cannot claim to have full knowledge of all browsers.

https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Referrer-Policy

@baknu
Copy link
Contributor

baknu commented Dec 2, 2021

Thanks. I just made a separate content issue for this.

@baknu baknu closed this Dec 2, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

Successfully merging this pull request may close these issues.

2 participants