[7] 
[DFN[[CODE[Cross-Origin-Resource-Policy:]]]]
[[ヘッダー]]は、
[[ドメイン横断]]アクセスに関する設定を記述できるものです。


* 仕様書

[REFS[
- [6] [CITE@en[Fetch Standard]] ([TIME[2018-06-18 22:38:38 +09:00]]) <https://fetch.spec.whatwg.org/#cross-origin-resource-policy-header>
]REFS]

* ヘッダー値

[8] 
[[ヘッダー値]]は、
[CODE[same-origin]]
か
[CODE[same-site]]
のいずれかです。[[大文字]]と[[小文字]]は区別''されます''。 [SRC[>>6]]


* 歴史

[5] [CODE[From-Origin:]] [[ヘッダー]]の提案がいろいろあってこの[[ヘッダー名]]になりました。

[1] [CITE@en[Define hosts' public suffix and registrable domain. by mikewest · Pull Request #391 · whatwg/url]]
([TIME[2018-06-13 22:14:23 +09:00]])
<https://github.com/whatwg/url/pull/391>

[2] [CITE@en[Define Cross-Origin-Resource-Policy response header]]
([[annevk]]著, [TIME[2018-06-18 22:36:30 +09:00]])
<https://github.com/whatwg/fetch/commit/0cec471b1ba938d775415e2ea08a2d2be4e72413>

[3] [CITE@en[Define Cross-Origin-Resource-Policy response header by annevk · Pull Request #733 · whatwg/fetch]]
([TIME[2018-06-19 22:42:12 +09:00]])
<https://github.com/whatwg/fetch/pull/733>

[4] [CITE@en[Fetch: test Cross-Origin-Resource-Policy: same-site's scheme restriction by annevk · Pull Request #11428 · web-platform-tests/wpt]]
([TIME[2018-06-19 22:43:40 +09:00]])
<https://github.com/web-platform-tests/wpt/pull/11428>

[9] [CITE[Release Notes for Safari Technology Preview 59 | WebKit]]
([TIME[2018-06-21 02:14:57 +09:00]])
<https://webkit.org/blog/8332/release-notes-for-safari-technology-preview-59/>

[10] [CITE@en[Editorial: use %s ABNF notation]]
([[annevk]]著, [TIME[2018-12-12 20:25:58 +09:00]])
<https://github.com/whatwg/fetch/commit/e69e9c2b73b1aac124de47e8f32ee8979dfdb77a>

[11] [CITE@en[Remove "combined value" concept]]
([[yutakahirano]]著, [TIME[2018-11-30 01:58:47 +09:00]])
<https://github.com/whatwg/fetch/commit/8324d0a8192ce4b48de512d714726fe06fb92851>

[12] [CITE@en[Fetch Standard]]
([TIME[2020-05-13 19:14:34 +09:00]])
<https://fetch.spec.whatwg.org/#cross-origin-resource-policy-header>

[13] [CITE@en[Editorial: use origin-based "schemelessly same site"]]
([[domenic]], [TIME[2019-11-21 02:42:34 +09:00]], [TIME[2022-01-12T09:29:04.000Z]])
<https://github.com/whatwg/fetch/commit/493c02127f49d6e9a4df5d56e2fcfa7fbaff48b2>