Answer the question
In order to leave comments, you need to log in
Is it possible to hide header headers in the browser?
Not through a browser to a specific client, but in general for everyone who will connect to my domain?
I'm passing Auththorization: Bearer some_token and I don't want it to be visible.
Answer the question
In order to leave comments, you need to log in
It is forbidden.
Review the application schema. As I understand it, you want to transfer some secret token for the browser owner from the server to browsers in order to access a third-party API that requires this token. Everything that the user has is considered disclosed.
Alternatively, pass requests to the API through your server. Or change this token very often. Or put up with the abuse of the token.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question