Redirected beacon requests ought to be treated as blockable content. |
||
Issue descriptionI'm told that we're not blocking beacon requests from secure sites to non-secure endpoints if the endpoint results from a redirect. That is: * https://example.com/ sends a beacon request to https://redirector.com/ * https://redirector.com/ responds with a 302 to http://non-secure.com/ In this case, the initial request would be allowed, and the redirect ought to be blocked.
,
Feb 18 2018
|
||
►
Sign in to add a comment |
||
Comment 1 by est...@chromium.org
, Nov 10 2017