These directives isn't going to mitigate any protection possibility. They are really definitely meant to pressure UA's to refresh risky information and facts, not continue to keep UA's from currently being retaining data. I found the web.config route valuable (attempted to incorporate it to the answer but will not seem https://admiralbookmarks.com/story21036718/about-%E3%83%93%E3%83%83%E3%83%88%E3%82%B3%E3%82%A4%E3%83%B3-%E3%82%AA%E3%83%B3%E3%83%A9%E3%82%A4%E3%83%B3%E3%82%AB%E3%82%B8%E3%83%8E