logoalt Hacker News

dborehamtoday at 3:36 AM2 repliesview on HN

The only thing to understand is that it does nothing useful today.


Replies

kristianduponttoday at 8:49 AM

What do you mean? It's a way to mitigate a certain attack vector and as far as I can tell, it works as intended given the circumstances it was designed under.

paulryanrogerstoday at 3:43 AM

Doesn't it help protect clients from malicious 3P JS?

At least so long as they don't have malicious extensions or a non-CORS browser?