Skip to content
This repository was archived by the owner on Feb 20, 2023. It is now read-only.

Latest commit

 

History

32 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

COEP: credentialless. Isolation w/o Opt-In?

Obsoletion notice

COEP:credentialless merged into the HTML and Fetch specification.

See PR:

Significant sections:

This document is not going to be actively maintained, please refer to HTML and FETCH as the source of truth for implementations.


Credentialless is a Cross-Origin-Embedder-Policy (COEP) variant. Similarly to require-corp, it can be used to enable cross-origin-isolation. Contrary to require-corp, it is easier to deploy, instead of requiring a Cross-Origin-Resource-Policy (CORP) header for every no-cors subresources, COEP:credentialless is requesting them without credentials.

About

`COEP: x-bikeshed-credentialless-unless-cors`

Resources

Contributing

Stars

29 stars

Watchers

4 watching

Forks

Releases

Packages

Contributors

Languages