Access-Control-Allow-Credentials

HTTP response header

Specifying which web sites can participate in cross-origin resource sharing (Indicates whether or not the response to the request can be exposed when the credentials flag is true)

Header usage statistics

Access-Control-Allow-Credentials response header information and usage statistics.
Websites using header Access-Control-Allow-Credentials296,877
Percentage of websites that use Access-Control-Allow-Credentials header0.37%
Total discovered header values79
Header uses directivesYes
Header values are unique or randomNo
Most popular in the country United States

Access-Control-Allow-Credentials directives (2 total)

  • false
  • true

Access-Control-Allow-Credentials Directives

Access-Control-Allow-Credentials directives value information and usage statistics
DirectiveShareWebsites countUnique Values
true86.42%256,5641
false12.98%38,5471

Access-Control-Allow-Credentials header usage distribution by website rank



Geographical Distribution

Header usage distribution by websites across the globe.



Websites utilizing Access-Control-Allow-Credentials

List of websites that use Access-Control-Allow-Credentials header
DomainCountryRankContacts
schema.org United States64
www.namecheap.com United States112
forbes.com United States291
www.forbes.com United States291
js.hs-scripts.com United States319
zoom.us United States330
See full domain list

Common header values

List of top common Access-Control-Allow-Credentials header values
Header valueValue prevalence
true86.39%
false12.98%
*0.29%
10.20%
: true0.05%
SAMEORIGIN0.02%
true always0.01%
yes0.01%
ture0.01%
864000.00%
POST,GET0.00%
trueÆ’0.00%
true;0.00%
Origin0.00%
true,true0.00%
true,0.00%
true>0.00%
true, true0.00%
true: always0.00%
no-cache, no-store, must-revalidate0.00%