File: chrome_security_state_tab_helper.h

package info (click to toggle)
chromium 138.0.7204.157-1
  • links: PTS, VCS
  • area: main
  • in suites: trixie
  • size: 6,071,864 kB
  • sloc: cpp: 34,936,859; ansic: 7,176,967; javascript: 4,110,704; python: 1,419,953; asm: 946,768; xml: 739,967; pascal: 187,324; sh: 89,623; perl: 88,663; objc: 79,944; sql: 50,304; cs: 41,786; fortran: 24,137; makefile: 21,806; php: 13,980; tcl: 13,166; yacc: 8,925; ruby: 7,485; awk: 3,720; lisp: 3,096; lex: 1,327; ada: 727; jsp: 228; sed: 36
file content (62 lines) | stat: -rw-r--r-- 2,633 bytes parent folder | download | duplicates (4)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
// Copyright 2024 The Chromium Authors
// Use of this source code is governed by a BSD-style license that can be
// found in the LICENSE file.

#ifndef CHROME_BROWSER_SSL_CHROME_SECURITY_STATE_TAB_HELPER_H_
#define CHROME_BROWSER_SSL_CHROME_SECURITY_STATE_TAB_HELPER_H_

#include <memory>

#include "base/functional/callback.h"
#include "components/security_state/content/security_state_tab_helper.h"
#include "components/security_state/core/security_state.h"
#include "content/public/browser/web_contents_observer.h"
#include "content/public/browser/web_contents_user_data.h"
#include "third_party/blink/public/common/security/security_style.h"

namespace content {
class NavigationHandle;
class WebContents;
}  // namespace content

// This class extends the SecurityStateTabHelper with functionality that is
// available in Chrome. In addition to using the `VisibleSecurityState` of the
// base class, it considers:
//  - the SafeBrowsingService to identify potentially malicious sites,
//  - the PolicyCertService on ChromeOs to check for cached content from an
//    untrusted source,
//  - the SafeTipInfo that is provided for the current page,
//  - the profile prefs to change how mixed forms are treated, and
//  - the HttpsOnlyModeTabHelper providing HTTPS-Only Mode data.
//
// Furthermove, it logs console warnings for private data on insecure pages.
class ChromeSecurityStateTabHelper : public SecurityStateTabHelper,
                                     public content::WebContentsObserver {
 public:
  // Creates a new `ChromeSecurityStateTabHelper` that can be accessed by using
  // the `SecurityStateTabHelper::From` method. It does not replace any existing
  // `SecurityStateTabHelper` but CHECKs that none was created. Every component
  // used with chrome/ should have the elevated checks provided by this clss.
  static void CreateForWebContents(content::WebContents* contents);

  ChromeSecurityStateTabHelper(const ChromeSecurityStateTabHelper&) = delete;
  ChromeSecurityStateTabHelper& operator=(const ChromeSecurityStateTabHelper&) =
      delete;

  ~ChromeSecurityStateTabHelper() override;

  std::unique_ptr<security_state::VisibleSecurityState>
  GetVisibleSecurityState() override;

  // content::WebContentsObserver:
  void DidStartNavigation(
      content::NavigationHandle* navigation_handle) override;
  void PrimaryPageChanged(content::Page& page) override;

 private:
  explicit ChromeSecurityStateTabHelper(content::WebContents* web_contents);

  security_state::MaliciousContentStatus GetMaliciousContentStatus() const;
};

#endif  // CHROME_BROWSER_SSL_CHROME_SECURITY_STATE_TAB_HELPER_H_