I've always thought there were some potential attacks there around cache disclosure (which Google avoided by going with SDCH instead).
CloudFlare controls the server and the client, so they don't need to worry about the attacks or about persuading everyone to adopt their RFC.
I've always thought there were some potential attacks there around cache disclosure (which Google avoided by going with SDCH instead).
CloudFlare controls the server and the client, so they don't need to worry about the attacks or about persuading everyone to adopt their RFC.