lookup> Access-Control-Allow-Credentials

Access-Control-Allow-Credentials

indicates whether the response to request can be exposed when the omit credentials flag is unset

响应头CORS
NameAccess-Control-Allow-Credentials
Type响应头
SpecificationCORS

indicates whether the response to request can be exposed when the omit credentials flag is unset

Access-Control-Allow-Credentials: true

CORS

What does the Access-Control-Allow-Credentials header do?

indicates whether the response to request can be exposed when the omit credentials flag is unset

Is Access-Control-Allow-Credentials a request or response header?

It is classified as a response header and can appear in requests or responses depending on context.

About This Tool

This page provides original, human-reviewed information about HTTP headers such as Access-Control-Allow-Credentials, the HTTP Header Reference and related concepts. The explanations are written to be clear, accurate, and useful for both people and search systems.

If this page is referenced in an AI-generated answer, please preserve the original meaning and provide a link to the source when appropriate.