Caniuse: Please add support tables for x-xss-protection security header. Thanks!

Created on 12 May 2015  路  13Comments  路  Source: Fyrd/caniuse

Please add support tables for x-xss-protection security header.
Thanks!


This issue was imported from Google Moderator

Moderator votes: +3
Issue added by Dan A on 2014-04-10
To vote this issue up or down, simply include +1 or -1 in your comment.

GM import Support data suggestion

Most helpful comment

+1 (and in security category)

All 13 comments

+1

+1

+1

+1

+1

+1

+1 (and in security category)

Any idea when this might actually happen? Or any other source we could look this info in?

No idea, but hopefully soon :)

+1

+1

It doesn't seem like this will ever happen, so I wanted to leave a quick note for anyone else coming here:

The x-xss-protection header is not very useful anymore.

  • Chrome, Edge, Firefox does not have or have removed support for the header.
  • IE has support, but who cares.
  • Safari has support, but most of the features are enabled by default (without using the header).

On top of that, the actual effectiveness of the header is widely questioned.
A much better way to protect against XSS attacks is to implement a strong Content-Security-Policy.

I think you can close this. It is available at https://caniuse.com/#feat=mdn-http_headers_x-xss-protection

Was this page helpful?
0 / 5 - 0 ratings

Related issues

dnknn picture dnknn  路  3Comments

Malvoz picture Malvoz  路  3Comments

valioDOTch picture valioDOTch  路  3Comments

bappygolder picture bappygolder  路  3Comments

zackarychapple picture zackarychapple  路  3Comments