| | Low | Medium-Low | Medium | Medium-High | High |
| Allow previously unused ActiveX controls to run without prompt | Enable | Enable | Enable | Disable | Disable |
| Allow scriptlets | Enable | Enable | Disable | Disable | Disable |
| Automatic prompting for ActiveX controls | Enable | Enable | Disable | Disable | Disable |
| Binary and script behaviors | Enable | Enable | Enable | Enable | Disable |
| Display video and animation on a webpage that does not use external media player | Disable | Disable | Disable | Disable | Disable |
| Download signed ActiveX controls | Enable | Prompt | Prompt | Prompt | Disable |
| Download unsigned ActiveX controls | Prompt | Disable | Disable | Disable | Disable |
| Initialize and script ActiveX controls not marked as safe for scripting | Prompt | Disable | Disable | Disable | Disable |
| Run ActiveX controls and plug-ins | Enable | Enable | Enable | Enable | Disable |
| Script ActiveX controls marked safe for scripting | Enable | Enable | Enable | Enable | Disable |
| | Low | Medium-Low | Medium | Medium-High | High |
| Access data sources across domains | Enable | Prompt | Disable | Disable | Disable |
| Allow META REFRESH | Enable | Enable | Enable | Enable | Disable |
| Allow scripting of Internet Explorer web browser control | Enable | Enable | Disable | Disable | Disable |
| Allow script-initiated windows without size or position constraints | Enable | Enable | Disable | Disable | Disable |
| Allow webpages to use restricted protocols for active content | Prompt | Prompt | Prompt | Prompt | Disable |
| Allow websites to open windows without address or status bars | Enable | Enable | Enable | Disable | Disable |
| Display mixed content | Prompt | Prompt | Prompt | Prompt | Prompt |
| Don't prompt for client certificate selection when no certificates or only one certificate exists | Enable | Enable | Disable | Disable | Disable |
| Drag and drop or copy and paste files | Enable | Enable | Enable | Enable | Prompt |
| Include local directory path when uploading files to a server | Enable | Enable | Enable | Enable | Disable |
| Installation of desktop items | Enable | Prompt | Prompt | Prompt | Disable |
| Launching applications and unsafe files | Enable | Enable | Prompt | Prompt | Disable |
| Launching programs and files in an IFRAME | Enable | Prompt | Prompt | Prompt | Disable |
| Navigate sub-frames across different domains | Enable | Enable | Disable | Disable | Disable |
| Open files based on content, not file extension | Enable | Enable | Enable | Enable | Disable |
| Software channel permissions | Low safety | Medium safety | Medium safety | Medium safety | High Safety |
| Submit non-encrypted form data | Enable | Enable | Enable | Enable | Prompt |
| Use Phishing Filter | Disable | Disable | Enable | Enable | Enable |
| Use Pop-Up Blocker | Disable | Disable | Enable | Enable | Enable |
| Userdata persistence | Enable | Enable | Enable | Enable | Disable |
| Websites in less privileged web content zone can navigate into this zone | Prompt | Enable | Enable | Enable | Disable |