| .NET Framework |
| Loose XAML |
Enable |
| XAML browser applications |
Enable |
| XPS documents |
Enable |
| .NET Framework-reliant Components |
| Permissions for components with manifests |
High Safety |
| Run components not signed with Authenticode |
Enable |
| Run components signed with Authenticode |
Enable |
| ActiveX Controls and Plugins |
| Allow previously unused ActiveX controls to run without prompt |
Enable |
| Allow Scriptlets |
Enable |
| Automatic prompting for ActiveX controls |
Enable |
| Binary and script behaviors |
Enabled |
| Display video and animation on a webpage that does not use external media player |
Disable |
| Download signed ActiveX controls |
Prompt |
| Download unsigned ActiveX controls |
Prompt |
| Initialize and script ActiveX controls not marked as safe for scripting |
Prompt |
| Run ActiveX controls and plugins |
Prompt/Enable |
| Script ActiveX controls marked as safe for scripting |
Enable |
| Downloads |
| Automatic prompting for file downloads |
Enable |
| File download |
Enable |
| Font download |
Prompt |
| Enable .NET Framework setup |
Enable |
| Java VM |
| Java permissions |
Medium safety |
| Miscellaneous |
| Access data sources across domains |
Enable |
| Allow META REFRESH |
Enable |
| Allow scripting of Internet Explorer web browser control |
Enable |
| Allow script-initiated windows without size or position constraints |
Enable |
| Allow webpages to use restricted protocols for active contents |
Prompt |
| Allow websites to open windows without address or status bars |
Enable |
| Display mixed content |
Prompt |
| Do not prompt for client certificate selection when no certificates or only one certificate exists |
Enable |
| Drag and drop or copy and paste files |
Prompt |
| Include local directory path when uploading files to a server |
Enable |
| Installation of desktop items |
Prompt |
| Launching applications and unsafe files |
Prompt |
| Launching programs and files in an IFRAME |
Prompt |
| Navigate sub-frames across different domains |
Enable |
| Open files based on content, not file extension |
Enable |
| Software channel permissions |
Medium safety |
| Submit non-encrypted form data |
Prompt |
| Use Phishing Filter |
Disable |
| Use Pop-up Blocker |
Disable |
| Userdata persistence |
Enable |
| Websites in less privilged web content zone can navigate into this zone |
Prompt |
| Scripting |
| Active scripting |
Enable |
| Allow Programmatic clipboard access |
Prompt |
| Allow status bar updates via script |
Enable |
| Allow websites to prompt for information using scripted windows |
Enable |
| Scripting of Java applets |
Enable |
| User Authentication |
| Logon |
Prompt for user name and password |