Re: [CORS] Access-Control-Expose-Headers

> Regarding the CORS spec:
> Shouldn't "list of exposed headers" be added to the resource policy
> bullet list? Or is that already covered by "list of supported
> headers"?

I guess that would make sense; added. "list of headers" (not supported)  
are headers that can be used in the request.

Anne van Kesteren

Received on Wednesday, 17 November 2010 14:21:40 UTC