Ignore X-Frame-Options Header 的評論
Ignore X-Frame-Options Header 作者: ThomazPom
60 筆評論
- 評價 5 分,滿分 5 分來自 Firefox 使用者 18285487,3 個月前I discovered this plugin as a helper for the Infy Scroll extension. Infy Scroll is useful but a little tricky to configure if you want to force Infinite Scrolling on certain sites; a simpler alternative though slightly less powerful is the UserScript Pagetual.
- 評價 5 分,滿分 5 分來自 KaffeeTrinker,10 個月前
- 評價 5 分,滿分 5 分來自 Ratheesh Pai,1 年前
- 評價 4 分,滿分 5 分來自 Firefox 使用者 14913472,3 年前
- Well, it's a solid extension that does what it says on the tin - unfortunately it's no longer enough, apparently. For example I tried to use it to enable previews of Twitter pages in pinboard.in's organize mode - and sure, the view itself loads, but it's broken, because other requests and scripts fail in ways I'm not motivated enough to investigate.
The web has changed. The header itself is incredibly useful - click jacking was a scourge, and sometimes really is. But the approach has its downsides. - 評價 5 分,滿分 5 分來自 Firefox 使用者 15957100,4 年前
- Very clever. I am writing a web page that used to pop a new window with a framebusting web site. With this extension I can now put it in an iframe next to related data.
Quick question: Can I test in Javascript if this extension is installed, so if is not, do the legacy popout? - 評價 5 分,滿分 5 分來自 Firefox 使用者 16848195,4 年前
- 評價 5 分,滿分 5 分來自 Realife_Brahmin,4 年前Worked for me for paying my Netflix subscription.
Edit: Thanks a lot for the warning! I've disabled the 'Ignore X frame' from the extension's menu by default and would only enable it when I'm sure that I'm paying via the correct website.開發者回應
張貼於 4 年前Please care that when you disable x frame option you are exposed to « clickjacking » as it is designed to protect you from
Always ensure you realy are on netflix.com in the address bar when you type your personal and credit card informations or they may be stolen .
https://owasp.org/www-project-web-security-testing-guide/v41/4-Web_Application_Security_Testing/11-Client_Side_Testing/images/Clickjacking_description.png
Regards