It’s high time browsers stop supporting :visited on cross-domain links by default.
No need to remove the feature completely, just not applying :visited on cross-domain links would fix privacy leak, while keeping most legit uses of :visited working fine.
It's been years that Google search result pages do not link directly to content, but goes through a google.com "redirect" url, so this use case could still work.
No need to remove the feature completely, just not applying :visited on cross-domain links would fix privacy leak, while keeping most legit uses of :visited working fine.