We're updating the issue view to help you get more done. 

Add frame-breaking script

Description

Frame-breaking is required for (legacy) browsers that do not support X-Frame-Origion or CSP2 headers or in case a proxy strips out the protection headers.
See also https://www.owasp.org/index.php/Clickjacking_Defense_Cheat_Sheet#Best-for-now_Legacy_Browser_Frame_Breaking_Script

Status

Assignee

Michael Ketting

Reporter

Michael Ketting

Labels

None

Components

Fix versions

Priority

Normal
Configure