URL lama soo raray
0 / 0

Sidebar-ka ku dhaji URLs-yada si aad u bilowdo

Riix S si aad u beddeshid sidebar-ka  ·  ? caawimaadda
Boggan wuxuu xannibaa iframe-ka la gelinta. Boggu wuxuu u muuqan karaa mid madhan.

Caawimaad & Hagaajinta Dhibaatooyinka
Sababta boggaga qaarkood aysan u soo furin
Maxay boggu u madhan tahay?

Boggag badan ayaa xanniba iframe-ka la gelinta iyagoo isticmaalaya HTTP headers. Tani waa sifo amniga oo ka ilaalinaysa clickjacking-ka.

⚠ Sida xannibidu u shaqeyso

Boggaga ayaa u diraya headers barawsarkaaga oo leh: "Ha igu darin." Barawsarku wuu addeecaa → iframe madhan.

HeaderSaamaynta
X-Frame-Options: DENYWax walba waa la xannibaa
X-Frame-Options: SAMEORIGINIsla domain-ka kaliya
CSP: frame-ancestors 'none'Xannibid casri ah
Waafaqsanaanta
BoggaXaaladda
Google, Gmail, GitHubLa xannibay
Facebook, X / TwitterLa xannibay
WikipediaQayb ahaan
Boggagaaga gaarka ahWaa shaqeeyaa ✓
Qalabka gudaha / dashboardsWaa shaqeeyaa ✓
Boggaga istaatikga ah / dukumeentiyadaWaa shaqeeyaa ✓
Ka dhig boggagaaga inay shaqeeyaan
✓ La taliyay

U deji frame-ancestors si aad u oggolaato walkurls.com kaliya.

Apache (.htaccess)
Header set Content-Security-Policy "frame-ancestors 'self' https://walkurls.com"
Header unset X-Frame-Options
Nginx
add_header Content-Security-Policy "frame-ancestors 'self' https://walkurls.com";
Node.js / Express
app.use((req, res, next) => {
  res.setHeader('Content-Security-Policy',
    "frame-ancestors 'self' https://walkurls.com");
  res.removeHeader('X-Frame-Options');
  next();
});
PHP
header("Content-Security-Policy: frame-ancestors 'self' https://walkurls.com");
header_remove("X-Frame-Options");
Vercel (vercel.json)
{
  "headers": [{
    "source": "/(.*)",
    "headers": [{
      "key": "Content-Security-Policy",
      "value": "frame-ancestors 'self' https://walkurls.com"
    }]
  }]
}
Netlify (_headers)
/*
  Content-Security-Policy: frame-ancestors 'self' https://walkurls.com
Tijaabinta

Fur DevTools F12 → Console. Haddii la xannibay:

Refused to display 'https://...' in a frame
because it set 'X-Frame-Options' to 'deny'.

Ka hubi headers-ka terminal-ka:

curl -I https://your-site.com | grep -i "frame\|content-security"
Amniga
⚠ Marnaba ha isticmaalin frame-ancestors * wax soo saarka

Had iyo jeer sheeg: https://walkurls.com

Furayaasha gaaban ee kiiboodhka
Kan hore / Kan xiga
SpaceU beddel ciyaar-tooska
Home EndKan koowaad / Kan ugu dambeeya
SU beddel sidebar-ka
FShaashadda buuxda
?Boggan caawimaadda