Skip to main content
Question

Workaround for clickjacking when using X-Frame-Options header

  • May 23, 2025
  • 1 reply
  • 5 views

Forum|alt.badge.img

I am displaying the box file information via iframe on Salesforce.
However, because anti-clickjacking measures are enabled on the box side, a screen (attached image) appears to fit into the cloud.
We would like to avoid this screen and display the file directly.
We are assuming that the above can be avoided by setting the X-Frame-Options header, and we would like to know the specific settings and the process.

1 reply

Forum|alt.badge.img

Hi there, 

Welcome to Box Community and glad to help! 

Can you attach a screenshot in this forum so we could get a closer look? 

We'd love to further assist!