logo

Deprecated Feature Policy Header Set

  • Risk:
  • Low

  • Type:
  • Passive
Summary

The header has now been renamed to Permissions-Policy.

Solution

Ensure that your web server, application server, load balancer, etc. is configured to set the Permissions-Policy header instead of the Feature-Policy header.

References

https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Permissions-Policy

https://scotthelme.co.uk/goodbye-feature-policy-and-hello-permissions-policy/

Free security scan for your website