http permissions policy directive
Permissions-Policy: payment directive
Limited availability
The HTTP Permissions-Policy header field’s payment directive controls whether the current document is allowed to use the Payment Request API.
Specifically, where a defined policy blocks use of this feature, PaymentRequest() constructor calls will throw a DOMException of type SecurityError.
Syntax
Permissions-Policy: payment=<allowlist>;
<allowlist>- : A list of origins for which permission is granted to use the feature. See
Permissions-Policy> Syntax for more details.
- : A list of origins for which permission is granted to use the feature. See
Default policy
The default allowlist for payment is self.
Specifications
SpecificationsStandards references are available on the canonical MDN page.
Browser compatibility
Browser compatibilityCompatibility data is available on the canonical MDN page.
See also
Permissions-Policyheader field- Permissions Policy