Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

insert sandbox attribute and provide necessary allow-* values to the iframe #404

Open
cnish09 opened this issue Oct 11, 2023 · 0 comments
Open

Comments

@cnish09
Copy link

cnish09 commented Oct 11, 2023

Hello Team,
We are having a security review in our org and one such issue is to include "sandbox" attribute to iframes in the sites. Is there a way to include this attribute in your component?

Note from security scan:
"The web page using an Inline Frame ("iframe") to embed a resource, such as a different web page without the sandbox attribute set or not configured correctly, might be at risk. IFrame sandboxing enables a set of additional restrictions for the content within a frame in order to restrict its potentially malicious code from causing harm to the web page that embeds it. "

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant