| | 923 | * Send a referrer policy header so referrers are not sent externally from administration screens. |
| | 924 | * |
| | 925 | * @since 4.9.0 |
| | 926 | */ |
| | 927 | function wp_admin_headers() { |
| | 928 | $policy = 'same-origin'; |
| | 929 | |
| | 930 | /** |
| | 931 | * Filters the admin referrer policy header value. Default 'same-origin'. |
| | 932 | * |
| | 933 | * @since 4.9.0 |
| | 934 | * @link https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Referrer-Policy |
| | 935 | * |
| | 936 | * @param string $policy The referrer policy header value. |
| | 937 | */ |
| | 938 | $policy = apply_filters( 'admin_referrer_policy', $policy ); |
| | 939 | |
| | 940 | header( sprintf( 'Referrer-Policy: %s', $policy ) ); |
| | 941 | } |
| | 942 | |
| | 943 | /** |