Security
Cookie security attributes
(1)
|
CSP
|
XFO
(1)
|
HSTS
|
x-xss-protection
|
x-content-type
(1
,
2
)
Privacy
CORS:
MDN,
CORS in Action,
definition
(script tag...)
|
referrer policy
(1
,
2,
3,
4
) |
server
|
date
Parameters
request method
|
request URL
|
response status code
Request
accept-encoding
accept-language
sec-fetch-dest
|
sec-fetch-mode
|
sec-fetch-site
Response
accept-ranges
content-encoding
|
content-length
cross-origin-opener-policy
last-modified
surrogate-key
vary
x-cache
(
1
)
x-powered-by
x-response-time
x-ton-expected-size
Content Negociation
accept-encoding
|
accept-language
Request Context
user-
agent
|
referer
Caching
pragma
|
expires
|
age
|
etag
(1)
|
cache-control
(1)
|
Amazon-specific
x-served-by
x-amz-ir-id
timing-allow-origin
Twitter-specific
x-connection-hash
x-ton-expected-size
x-connection-hash