Details
Alert Id 10063-2
Alert Type Passive
Status beta
Risk Low
CWE 16
WASC 15
Technologies Targeted All
Tags OWASP_2017_A05
OWASP_2021_A01

Summary

The header has now been renamed to Permissions-Policy.

Solution

Ensure that your web server, application server, load balancer, etc. is configured to set the Permissions-Policy header instead of the Feature-Policy header.

References

Code

org/zaproxy/zap/extension/pscanrulesBeta/PermissionsPolicyScanRule.java