* Jeremy Shapiro <jnshapiro at gmail.com> [2018-04-26 07:25]: > Inadvised for security reasons or because it's hard to get working? What purpose does it serve? Metadata shouldn't contain secrets and shouldn't vary depending on who's asking, so should be no need to enforce the HTTP client's identity. -peter