Skip to content

fix(goto): don’t forward sec-fetch-* headers#778

Merged
Kikobeats merged 2 commits into
masterfrom
next
Jun 4, 2026
Merged

fix(goto): don’t forward sec-fetch-* headers#778
Kikobeats merged 2 commits into
masterfrom
next

Conversation

@Kikobeats
Copy link
Copy Markdown
Member

@Kikobeats Kikobeats commented Jun 4, 2026

Note

Low Risk
Targeted navigation header fix with tests; workspace dependency pins are tooling-only with no runtime behavior change beyond goto header filtering.

Overview
@browserless/goto no longer passes sec-fetch-* headers through setExtraHTTPHeaders. User-supplied headers are kept as rawHeaders for device/user-agent logic, then any key starting with sec-fetch- is dropped before extra HTTP headers are applied so Chrome can set correct per-request metadata (e.g. cross-origin fetch is not stuck with navigation-style same-origin values).

Monorepo packages switch internal @browserless/* and browserless dependencies from pinned ^13.x versions to workspace:*. New unit tests in packages/goto/test/unit/headers cover filtering and cross-origin subrequests.

Reviewed by Cursor Bugbot for commit 64fba54. Bugbot is set up for automated code reviews on this repo. Configure here.

@coveralls
Copy link
Copy Markdown

coveralls commented Jun 4, 2026

Coverage Status

coverage: 91.866%. first build — next into master

@Kikobeats Kikobeats merged commit aaf1f28 into master Jun 4, 2026
20 checks passed
@Kikobeats Kikobeats deleted the next branch June 4, 2026 21:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants