Closed
Description
As part of the HTTP2 (and HTTP3) spec, some headers can be sent as Literal Header Field Never Indexed
This can be used for security reasons to avoid CRIME
(Compression Ratio Info-leak Made Easy) attacks to expose sensitive information.
Points of interest are:
It'll help diagnose #28632