You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Require servers to advertise or opt in to access data.
Even for data sent in HTTP request headers, requiring servers to advertise use of particular data, publicly document a policy, or "opt in" before clients send configuration data provides the possibility of detection by user agents or researchers.
For example, Client Hints [[?httpbis-client-hints]] proposes an Accept-CH response header for services to indicate that specific hints can be used for content negotiation, rather than all supporting clients sending all hints in all requests.
This is a relatively new approach; we're still evaluating whether this provides meaningful and useful detectability.
This was written just over 6 years ago. It seems like we should remove this note about evaluating it, and decide what we think of it.
The text was updated successfully, but these errors were encountered:
This was written just over 6 years ago. It seems like we should remove this note about evaluating it, and decide what we think of it.
The text was updated successfully, but these errors were encountered: