How to use this reference
Review owned-service destination policy, parser consistency, redirect behavior and independent egress restrictions.
Before reading
- Basic knowledge of web requests and application/network boundaries
Context and limits
- The destination-policy design depends on business requirements. Metadata protections complement application validation and network isolation.
Sources and provenance
- Server-Side Request Forgery Prevention Cheat Sheet OWASP · reviewed 2026-10-02
Record reviewed 2026-10-02. Snapshot d5550c789111. Open the complete JSON contract.