Missing Permissions Policy

info Web App Scanning Plugin ID 98526

Synopsis

Missing Permissions Policy

Description

Permissions Policy provides mechanisms to websites to restrict the use of browser features in its own frame and in iframes that it embeds.

Solution

Configure Permissions Policy on your website by adding 'Permissions-Policy' HTTP header.

See Also

https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Feature-Policy

https://scotthelme.co.uk/goodbye-feature-policy-and-hello-permissions-policy/

Plugin Details

Severity: Info

ID: 98526

Type: remote

Published: 3/27/2019

Updated: 3/25/2024

Scan Template: basic, config_audit, full, overview, pci, quick, scan