3 ms·
So is there any reason not to block any requests on your server if they contain the CF-WORKER header?
by xPaw 6y ago
So is there any reason not to block any requests on your server if they contain the CF-WORKER header?
- oefrha 6y agoI’ve built legit CORS proxies for web-based community tools using CF Workers when the first party doesn’t set CORS headers.
- minitech 6y agoYep – any legitimate tool that makes requests on behalf of a user could do so using Cloudflare workers. (A webpage translation service, for example.) It’s the same as any other provider. You could block based on the value of the CF-Worker header if you find it’s being abused.