Front-end web development isn’t my core area of expertise, but every now and then I am slightly more than the usual spectator and do get involved.
Lots of people seem to have questions about it: Highest Voted ‘x-frame-options’ Questions – Stack Overflow.
So, from The X-Frame-Options response header:
There are three possible values for X-Frame-Options:
- The page cannot be displayed in a frame, regardless of the site attempting to do so.
- The page can only be displayed in a frame on the same origin as the page itself.
- The page can only be displayed in a frame on the specified origin.