Baseline Widely available *
HTMLIFrameElement.referrerPolicy
ããããã£ã¯ HTML ã® <iframe>
è¦ç´ ã® referrerpolicy
屿§ãåæ ãããªã½ã¼ã¹ã®å徿ã«ã©ã®ãªãã¡ã©ã¼ãéä¿¡ããããå®ç¾©ãã¾ãã
no-referrer
Referer
ãããã¼ã¯å®å
¨ã«çç¥ããã¾ãããªã¯ã¨ã¹ãã¨å
±ã«éä¿¡ããããªãã¡ã©ã¼æ
å ±ã¯ããã¾ããã
no-referrer-when-downgrade
ãããã³ã«ã®ã»ãã¥ãªãã£ã¬ãã«ãå¤ãããªãå ´åï¼ä¾: HTTPâHTTPãHTTPSâHTTPSï¼ã«ã¯ãªãã¡ã©ã¼ã¨ã㦠URL ãéä¿¡ããã»ãã¥ãªãã£ã¬ãã«ã®ä½ãå®å ï¼ä¾: HTTPSâHTTPï¼ã«ã¯éä¿¡ãã¾ããã
origin
ã©ã®ãããªå ´åã§ãããã®ææ¸ã®ãªãªã¸ã³ã ãããªãã¡ã©ã¼ã¨ãã¦éä¿¡ãã¾ãã ææ¸ https://example.com/page.html
ã¯ãªãã¡ã©ã¼ã¨ã㦠https://example.com/
ãéãã¾ãã
origin-when-cross-origin
åä¸ãªãªã¸ã³ãªã¯ã¨ã¹ããè¡ãå ´åã¯å®å ¨ãª URL ãéä¿¡ãããã以å¤ã®å ´åã¯ææ¸ã®ãªãªã¸ã³ã®ã¿ãéä¿¡ãã¾ãã
same-origin
ãªãã¡ã©ã¼ã¯åä¸ãµã¤ããªãªã¸ã³ã«ã¯éä¿¡ããã¾ããããªãªã¸ã³éãªã¯ã¨ã¹ãã§ã¯ãªãã¡ã©ã¼æ å ±ãéä¿¡ããã¾ããã
strict-origin
ãããã³ã«ã®ã»ãã¥ãªãã£ã¬ãã«ãå¤ãããªãå ´åï¼ä¾: HTTPSâHTTPSï¼ã ããææ¸ã®ãªãªã¸ã³ããªãã¡ã©ã¼ã¨ãã¦éä¿¡ããã»ãã¥ãªãã£ã¬ãã«ã®ä½ãå®å ï¼ä¾: HTTPSâHTTPï¼ã«ã¯éä¿¡ããªãããã«ãã¾ãã
strict-origin-when-cross-origin
(default)
ããã¯ãããªã·ã¼ãæå®ããã¦ããªãå ´åã®ã¦ã¼ã¶ã¼ã¨ã¼ã¸ã§ã³ãã®æ¢å®ã®åä½ã§ããåä¸ãªãªã¸ã³ãªã¯ã¨ã¹ããè¡ãå ´åã¯å®å ¨ãª URL ãéä¿¡ãããããã³ã«ã®ã»ãã¥ãªãã£ã¬ãã«ãå¤ãããªãå ´åã¯ãªãªã¸ã³ã®ã¿ãéä¿¡ãï¼ä¾: HTTPSâHTTPSï¼ãã»ãã¥ãªãã£ã¬ãã«ã®ä½ãå®å ã«ã¯ãããã¼ãéä¿¡ãã¾ããï¼ä¾: HTTPSâHTTPï¼ã
unsafe-url
åä¸ãªãªã¸ã³ã¾ãã¯ãªãªã¸ã³éãªã¯ã¨ã¹ããå®è¡ããã¨ãã«ãå®å ¨ãª URL ãéä¿¡ãã¾ãã
ã¡ã¢: ãã®ããªã·ã¼ã¯ã TLS ã§ä¿è·ããããªã½ã¼ã¹ããå®å ¨ã§ãªããªãªã¸ã³ã¸ã®ãªãªã¸ã³ã¨ãã¹ãæ¼æ´©ãã¾ãã ãã®è¨å®ã®å½±é¿ãæ éã«æ¤è¨ãã¦ãã ããã
const iframe = document.createElement("iframe");
iframe.src = "/";
iframe.referrerPolicy = "unsafe-url";
const body = document.querySelector("body");
body.appendChild(iframe); // å®å
¨ãª URL ããªãã¡ã©ã¼ã¨ãã¦ä½¿ç¨ãã¦ç»åãåå¾
仿§æ¸ ãã©ã¦ã¶ã¼ã®äºææ§ é¢é£æ
å ±
RetroSearch is an open source project built by @garambo | Open a GitHub Issue
Search and Browse the WWW like it's 1997 | Search results from DuckDuckGo
HTML:
3.2
| Encoding:
UTF-8
| Version:
0.7.4