[Webkit-unassigned] [Bug 272683] Referrer-Policy 'unsafe-url' and co. supported for same-site URLs

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Wed Apr 17 00:14:04 PDT 2024


https://bugs.webkit.org/show_bug.cgi?id=272683

--- Comment #2 from jannis.rautenstrauch at cispa.de ---
I did not find the blog post describing the current behavior. The browser compat data currently says Safari removed support for 'unsafe-url' in version 13: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Referrer-Policy#browser_compatibility

Brave seems to be never allowing anything weaker than the default `strict-origin-when-cross-origin`.

Firefox seems to be using the same `origin-when-cross-site`: https://bugzilla.mozilla.org/show_bug.cgi?id=1891510

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.webkit.org/pipermail/webkit-unassigned/attachments/20240417/dc7edeb2/attachment.htm>


More information about the webkit-unassigned mailing list