Safari is ignoring Cache-Control Headers

If you are developing a website application, and you want the page to be requested every time the user hits a back/forward button, the common way to achieve this is to use: Cache-Control: no store, no cache, must revalidate, etc. However, Safari is ignoring this directive, so users can get back into the application without re-authenticating. Any subsequent requests are unauthorized, but still this is a bug found only in Safari. I tested with Chrome and Firefox.

Posted on Sep 19, 2020 1:31 PM

Reply

There are no replies.

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

Safari is ignoring Cache-Control Headers

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.