HTML <iframe> sandbox atributo

Pagsasakop at paggamit

sandbox Ang atributo ay binigyan ng isang grupo ng dagdag na limitasyon sa content ng iframe.

Kapag sandbox Kung mayroon ang atributo, ito ay:

  • Ang content ay magiging mula sa isang tanging pinagmulan
  • Iwasan ang pagsumite ng form
  • Iwasan ang pagpapatupad ng script
  • Disable API
  • Iwasan ang mga link na patungo sa ibang browsing context
  • Iwasan ang paggamit ng content ng plugin (sa pamamagitan ng <embed>, <object>, <applet> o iba pa)
  • Iwasan ang navigation ng content sa pinakamataas na browsing context
  • Iwasan ang mga pag-i-auto trigger ng mga function (halimbawa, auto-play ng video o auto-focus sa mga form control)

sandbox Ang halaga ng atributo ay maaaring maging walang halaga (kung gayon, ang lahat ng mga limitasyon ang gagamitin), o isang listahan ng predefinidong halaga na nahahati ng paghahati, na magbubuwag ng mga partikular na limitasyon.

Mga halimbawa

Mga halimbawa 1

Mga <iframe> na may dagdag na limitasyon:

<iframe src="demo_iframe_sandbox.htm" sandbox></iframe>

Subukan nang personal

Mga halimbawa 2

Pahihintulutan ang pagsumite ng form sa <iframe> sand盒:

<iframe src="demo_iframe_sandbox_form.htm" sandbox="allow-forms"></iframe>

Subukan nang personal

Mga halimbawa 3

Pahihintulutan ang script sa <iframe> sand盒:

<iframe src="demo_iframe_sandbox_origin.htm" sandbox="allow-scripts"></iframe>

Subukan nang personal

Mga sintaksis

<iframe sandbox="value">

Halagang atributo

Halaga Paglalarawan
"" (walang halaga) I-aplay ang lahat ng mga limitasyon na ito.
allow-forms Pahihintulutan ang pagsumite ng form.
allow-modals Pahihintulutan ang pagbubukas ng modal window.
allow-orientation-lock Pahihintulutan ang pag-lock ng direksiyon ng screen.
allow-pointer-lock อนุญาตให้ใช้ API Pointer Lock
allow-popups อนุญาตให้หน้าต่างปรากฎขึ้น
allow-popups-to-escape-sandbox อนุญาตให้หน้าต่างปรากฎขึ้นในหน้าต่างใหม่ โดยไม่ทำนิยามสแฟลด์แบงก์
allow-presentation อนุญาตให้เริ่มสัมโภชนะสนทนา
allow-same-origin อนุญาตให้ iframe บรรยายเนื้อหาถือว่ามีต้นกำเนิดเดียวกับเอกสารที่บรรจุ
allow-scripts อนุญาตให้ปฎิบัติสคริปต์
allow-top-navigation อนุญาตให้ iframe บรรยายเนื้อหาเพื่อแนวทางหลัวของบราวเซอร์
allow-top-navigation-by-user-activation อนุญาตให้ iframe บรรยายเนื้อหาเพื่อแนวทางหลัวของบราวเซอร์ แต่แค่ในกรณีที่ผู้ใช้สนับสนุน

การสนับสนุนโปรแกรมบราวเซอร์

ตัวเลขในตารางนี้บอกเล่าถึงเวอร์ชั่นบราวเซอร์ที่สนับสนุนคุณสมบัตินี้เต็มที่

Chrome Edge Firefox Safari Opera
Chrome Edge Firefox Safari Opera
4.0 10.0 17.0 5.0 15.0