Caniuse: [HTTP Header] Cross-Origin-Opener-Policy

Created on 8 Jul 2018  路  4Comments  路  Source: Fyrd/caniuse

The Cross-Origin-Opener-Policy (COOP) header prevents third-parties from opening/controlling a window.

Explainers:
https://docs.google.com/document/d/1eQEdjHDaJHJ5SFyRKjcqohS7x8XSpF8xmajXimAKcHc
https://docs.google.com/document/d/1Ey3MXcLzwR1T7aarkpBXEwP7jKdd2NvQdgYvF8_8scI

Initial definition:
https://gist.github.com/annevk/6f2dd8c79c77123f39797f6bdac43f3e

Google I/O 2019 explainer video:
https://www.youtube.com/watch?v=DDtM9caQ97I&t=2264

Chrome status:
https://www.chromestatus.com/feature/5432089535053824


Edit:
This header was implemented in Safari 12 and renamed from Cross-Origin-Options to Cross-Origin-Window-Policy but support was dropped in release note 67.

This header was also at some point proposed as Cross-Origin-Isolate.

I mention name changes mainly because we should preferably include those as keywords so developers can find the latest version of the header if they stumble upon old documentation.

Support data suggestion

All 4 comments

The Cross-Origin-Opener-Policy header is now implemented in Firefox 67.

Was this page helpful?
0 / 5 - 0 ratings

Related issues

SanderMuller picture SanderMuller  路  3Comments

valioDOTch picture valioDOTch  路  3Comments

Malvoz picture Malvoz  路  3Comments

zackarychapple picture zackarychapple  路  3Comments

bappygolder picture bappygolder  路  3Comments