Re: [whatwg/fetch] What would be the downside of respecing `Access-Control-Allow-Origin: *` even when the `Origin` header is not sent? (#680)

> I'd like to explore what downsides there might be in changing the spec to allow CORS requests to optionally be sent without setting the Origin header on the request

What's the goal here?

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/whatwg/fetch/issues/680#issuecomment-371325006

Received on Wednesday, 7 March 2018 23:40:21 UTC