Baseline Widely available *
HTMLIFrameElement.referrerPolicy
屿§è¡¨ç¤ºäº <iframe>
å
ç´ ç referrerpolicy
屿§ï¼è¯¥å±æ§å®ä¹äºå¨è·åèµæºæ¶åéåªä¸ªå¼ç¨è
ã
no-referrer
Referer
æ 头å°è¢«å®å
¨çç¥ãè¯·æ±æ¶ä¸ä¼åéä»»ä½å¼ç¨è
ä¿¡æ¯ã
no-referrer-when-downgrade
å½åè®®å®å ¨çº§å«ä¿æä¸åï¼HTTP â HTTPãHTTPS â HTTPSï¼æ¶ï¼URL ä½ä¸ºå¼ç¨è åéï¼ä½ä¸ä¼åéå°å®å ¨æ§è¾ä½çç®çå°ï¼HTTPS â HTTPï¼ã
origin
卿ææ
åµä¸ä»
åéææ¡£çæºä½ä¸ºå¼ç¨è
ãhttps://example.com/page.html
ææ¡£å°åéå¼ç¨è
https://example.com/
ã
origin-when-cross-origin
æ§è¡åæºè¯·æ±æ¶åé宿´ç URLï¼ä½å¨å ¶ä»æ åµä¸ä» åéææ¡£çæºã
same-origin
å°åæºçç¥åéç»å¼ç¨è ï¼ä½è·¨æºè¯·æ±å°ä¸å å«å¼ç¨è ä¿¡æ¯ã
strict-origin
å½åè®®å®å ¨çº§å«ä¿æä¸åï¼HTTPS â HTTPSï¼æ¶ä» åéææ¡£çæºä½ä¸ºå¼ç¨è ï¼ä½ä¸åéå°å®å ¨æ§è¾ä½çç®çå°ï¼HTTPS â HTTPï¼ã
strict-origin-when-cross-origin
ï¼é»è®¤å¼ï¼
è¿æ¯ç¨æ·ä»£çæªæå®çç¥æ¶çé»è®¤è¡ä¸ºãæ§è¡åæºè¯·æ±æ¶åé宿´ç URLï¼ä» å½åè®®å®å ¨çº§å«ä¿æä¸åï¼HTTPS â HTTPSï¼æ¶åéæºï¼å¹¶ä¸ä¸åå®å ¨æ§è¾ä½çç®çå°ï¼HTTPS â HTTPï¼åé任使 头ã
unsafe-url
彿§è¡åæºæè·¨æºè¯·æ±æ¶åé宿´ç URLã
夿³¨ï¼ æ¤çç¥å°æå TLS ä¿æ¤çèµæºçæºåè·¯å¾æ³é²ç»ä¸å®å ¨çæºãä»ç»èèæ¤è®¾ç½®çå½±åã
const iframe = document.createElement("iframe");
iframe.src = "/";
iframe.referrerPolicy = "unsafe-url";
const body = document.querySelector("body");
body.appendChild(iframe); // 使ç¨å®æ´ç URL ä½ä¸ºå¼ç¨æºæ¥è·åå¾å
è§è æµè§å¨å
¼å®¹æ§ åè§
RetroSearch is an open source project built by @garambo | Open a GitHub Issue
Search and Browse the WWW like it's 1997 | Search results from DuckDuckGo
HTML:
3.2
| Encoding:
UTF-8
| Version:
0.7.4