From 0523d0c135510a415b7bfd06d7d7b7319c2af939 Mon Sep 17 00:00:00 2001 From: Barry Pollard Date: Tue, 21 Jan 2025 22:13:35 +0000 Subject: [PATCH 1/2] Change x-frame-options obsoletes wording --- index.bs | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/index.bs b/index.bs index 32b4dc62ff..94566473ac 100644 --- a/index.bs +++ b/index.bs @@ -3677,7 +3677,7 @@ Content-Type: application/reports+json header's \``DENY`\`, and `'self'` to that header's \``SAMEORIGIN`\`. [[!HTML]] In order to allow backwards-compatible deployment, the - `frame-ancestors` directive obsoletes the + `frame-ancestors` directive supersedes the \`[:X-Frame-Options:]\` header. If a resource is delivered with a policy that includes a directive named `frame-ancestors` and whose disposition is From 258c235015ac8a5f1db948d265389b2296f270a7 Mon Sep 17 00:00:00 2001 From: Barry Pollard Date: Tue, 21 Jan 2025 22:25:02 +0000 Subject: [PATCH 2/2] Update to overrides --- index.bs | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/index.bs b/index.bs index 94566473ac..9ac7f4a1ea 100644 --- a/index.bs +++ b/index.bs @@ -3677,7 +3677,7 @@ Content-Type: application/reports+json header's \``DENY`\`, and `'self'` to that header's \``SAMEORIGIN`\`. [[!HTML]] In order to allow backwards-compatible deployment, the - `frame-ancestors` directive supersedes the + `frame-ancestors` directive overrides the \`[:X-Frame-Options:]\` header. If a resource is delivered with a policy that includes a directive named `frame-ancestors` and whose disposition is