DISA STIG • Browser

Google Chrome

Release: 11 Benchmark Date: 02 Jul 2025 46 Rules 0 CAT I 44 CAT II 2 CAT III
Vuln ID STIG ID CAT Finding Responsibility
V-221558 DTBC-0001 CAT II Firewall traversal from remote host must be disabled.
V-221559 DTBC-0002 CAT II Site tracking users location must be disabled.
V-221561 DTBC-0004 CAT II Sites ability to show pop-ups must be disabled.
V-221562 DTBC-0005 CAT II Extensions installation must be blocklisted by default.
V-221564 DTBC-0007 CAT II The default search providers name must be set.
V-221565 DTBC-0008 CAT II The default search provider URL must be set to perform encrypted searches.
V-221566 DTBC-0009 CAT II Default search provider must be enabled.
V-221567 DTBC-0011 CAT II The Password Manager must be disabled.
V-221570 DTBC-0017 CAT II Background processing must be disabled.
V-221571 DTBC-0020 CAT II Google Data Synchronization must be disabled.
V-221572 DTBC-0021 CAT II The URL protocol schema javascript must be disabled.
V-221573 DTBC-0023 CAT II Cloud print sharing must be disabled.
V-221574 DTBC-0025 CAT II Network prediction must be disabled.
V-221575 DTBC-0026 CAT II Metrics reporting to Google must be disabled.
V-221576 DTBC-0027 CAT II Search suggestions must be disabled.
V-221577 DTBC-0029 CAT II Importing of saved passwords must be disabled.
V-221578 DTBC-0030 CAT II Incognito mode must be disabled.
V-221579 DTBC-0037 CAT II Online revocation checks must be performed.
V-221580 DTBC-0038 CAT II Safe Browsing must be enabled.
V-221581 DTBC-0039 CAT II Browser history must be saved.
V-245539 DTBC-0045 CAT II Session only based cookies must be enabled.
V-221584 DTBC-0050 CAT II The version of Google Chrome running on the system must be a supported version.
V-221586 DTBC-0052 CAT II Deletion of browser history must be disabled.
V-221587 DTBC-0053 CAT II Prompt for download location must be enabled.
V-221588 DTBC-0055 CAT II Download restrictions must be configured.
V-221590 DTBC-0057 CAT II Safe Browsing Extended Reporting must be disabled.
V-221591 DTBC-0058 CAT II WebUSB must be disabled.
V-221594 DTBC-0063 CAT II Google Cast must be disabled.
V-221595 DTBC-0064 CAT II Autoplay must be disabled.
V-221596 DTBC-0065 CAT II URLs must be allowlisted for Autoplay use.
V-221597 DTBC-0066 CAT II Anonymized data collection must be disabled.
V-221598 DTBC-0067 CAT II Collection of WebRTC event logs must be disabled.
V-226401 DTBC-0069 CAT II Guest Mode must be disabled.
V-226402 DTBC-0070 CAT II AutoFill for credit cards must be disabled.
V-226403 DTBC-0071 CAT II AutoFill for addresses must be disabled.
V-226404 DTBC-0072 CAT II Import AutoFill form data must be disabled.
V-241787 DTBC-0073 CAT II Web Bluetooth API must be disabled.
V-245538 DTBC-0074 CAT II Use of the QUIC protocol must be disabled.
V-275780 DTBC-0075 CAT II Create Themes with AI must be disabled.
V-275781 DTBC-0076 CAT II DevTools Generative AI features must be disabled.
V-275782 DTBC-0077 CAT II GenAI local foundational model must be disabled.
V-275783 DTBC-0078 CAT II Help Me Write must be disabled.
V-275784 DTBC-0079 CAT II AI-powered History Search must be disabled.
V-275785 DTBC-0080 CAT II Tab Compare Settings must be disabled.
V-221563 DTBC-0006 CAT III Extensions that are approved for use must be allowlisted.
V-221599 DTBC-0068 CAT III Chrome development tools must be disabled.