Re: [whatwg/fetch] Vary HTTP cache on credentials mode (#307)

Would it help if I said that it should be safe to include `Access-Control-Allow-Origin: *` even if the resource's contents end up being different when passed credentials?

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/whatwg/fetch/issues/307#issuecomment-285113449

Received on Wednesday, 8 March 2017 17:45:57 UTC