#31923: Add Support for Cross-Origin Embedder Policy and Cross-Origin Resource
Policy Headers
-------------------------------------+-------------------------------------
Reporter: meggles711 | Owner:
| meggles711
Type: New feature | Status: assigned
Component: HTTP handling | Version: master
Severity: Normal | Resolution:
Keywords: COEP, header, CORP, | Triage Stage:
security | Someday/Maybe
Has patch: 0 | Needs documentation: 0
Needs tests: 0 | Patch needs improvement: 0
Easy pickings: 0 | UI/UX: 0
-------------------------------------+-------------------------------------
Changes (by felixxm):
* cc: Florian Apolloner, Adam (Chainz) Johnson (added)
* stage: Unreviewed => Someday/Maybe
Comment:
Cross-Origin Embedder Policy spec is still [https://wicg.github.io/cross-
origin-embedder-policy/ preliminary] and may change at any moment. Also,
[https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Cross-Origin-
Resource-Policy Cross-Origin Resource Policy] is not supported by all
browser (e.g. Opera) and implementations on Chrome and Firefox have some
bugs.
We can reconsider this ticket when specifications and implementations
become more mature and stable.
--
Ticket URL: <https://code.djangoproject.com/ticket/31923#comment:2>
Django <https://code.djangoproject.com/>
The Web framework for perfectionists with deadlines.
--
You received this message because you are subscribed to the Google Groups
"Django updates" group.
To unsubscribe from this group and stop receiving emails from it, send an email
to [email protected].
To view this discussion on the web visit
https://groups.google.com/d/msgid/django-updates/068.86a052e039755a6219d1d19529d0fed5%40djangoproject.com.