Add a Permissions-Policy header
headers-permissions
Permissions-Policy controls which browser features a page and its iframes may use, so camera, microphone and geolocation stay off by default.
Why this matters
Permissions-Policy controls browser features like camera and microphone access. Browsers already ask for permission before using these, so this is a nice extra layer but not urgent.
CDN and edge
Web servers
Frameworks
Cloudflare
- 1 Go to Rules > Transform Rules > Modify Response Header
- 2 Create a rule that sets Permissions-Policy to the desired value
- 3 Deploy the rule
Header name: Permissions-Policy
Value: camera=(), microphone=(), geolocation=()Does your app still have this?
Scan your domain