Hacker News new | ask | show | jobs
by divtxt 5196 days ago
Thank you for pointing me to X-Frame-Origin!

So, in the context of this discussion, why don't the browsers make X-Frame-Origin: DENY the default behavior?????