HTTP
We track 24 posts about HTTP from 15 engineering blogs. Most active: HTTP Toolkit, Daniel Stenberg, Cloudflare. Latest post: Oct 5, 2026.
Companies writing about HTTP
Recent posts
Quiz: How to Launch an HTTP Server in One Line of Python Code (opens on the source site)
In this quiz, you’ll test your understanding of How to Launch an HTTP Server in One Line of Python Code. By working through this quiz, you’ll revisit how to start Python’s http.server from the command line, bind it to an address and port, and choose which directory it shares. You’ll also check your knowledge of running CGI scripts, building a handler on top of BaseHTTPRequestHandler, serving over HTTPS, and knowing when to keep this server out of production. [ Improve Your Python With 🐍 Python Tricks 💌 – Get a short & sweet Python Trick delivered to your inbox every couple of days. >> Click…
Monetization Gateway beta: charge AI agents for consumption with HTTP 402 (opens on the source site)
Cloudflare’s AI Gateway, Ceramic.ai, Stocktwits, and more are using the Cloudflare Monetization Gateway today to charge agents for access to tokens, APIs, and MCP tools. U.S.-based sellers can now apply for access to the closed beta.
We just shipped support for the ugliest part of HTTP: Vary (opens on the source site)
Vary support is now available in Cache Rules on every plan. You can normalize known negotiation headers, pass exact values through to the origin when those small differences matter, or bypass cache when the variation is too unpredictable.
AI Gateway now supports TypeSafe clients and an HTTP API for Jev (opens on the source site)
Vercel ·
You can now call Jev from TypeSafe AI through AI Gateway using an existing TypeSafe client or the HTTP API, in addition to the AI SDK. TypeSafe client: Point an existing TypeSafe client at AI Gateway without changing its evaluation calls. HTTP API: Call Jev directly from any language or framework. AI SDK: Call Jev from a TypeScript application using AI SDK. Jev is a probabilistic decision model for software. State goes in, and typed answers come out with probabilities attached, so there's no generated text to parse. Requests are billed through AI Gateway on all three paths, so they appear…
ClickHouse as a streaming HTTP API (opens on the source site)
Learn how to build a streaming HTTP API directly in ClickHouse 26.8 with named handlers, typed parameters, pagination, framing formats, and access control.
Building a Proxy-Aware HTTP Client in Node.js Without Coupling Your App to a Provider. (opens on the source site)
null Continue reading Building a Proxy-Aware HTTP Client in Node.js Without Coupling Your App to a Provider. on SitePoint.
HTTP Message Signatures with curl (opens on the source site)
The recently published RFC 9421 describes how to do HTTP Message Signatures, and starting just now, curl experimentally supports them. Message Signatures The specification describes this as a mechanism for creating, encoding, and verifying digital signatures or message authentication codes over components of an HTTP message. It is a way to verify that selected parts … Continue reading HTTP Message Signatures with curl →
Workshop Basel day three (opens on the source site)
See also: day one, day two. There is only one thing that is better than two days of HTTP workshop, and that is of course three days of HTTP workshop. The final day of this edition of the series started out with us again shuffling around where we parked ourselves around the big table. Except … Continue reading Workshop Basel day three →
Workshop Basel day two (opens on the source site)
If you missed it. I already described day one. Caffeinated and ready, we all gathered in the same spacious room as yesterday, but seated in new places as “suggested” by our captain. Some of us even remembered to move over the name tags we wrote yesterday to our new seats. No time was wasted on … Continue reading Workshop Basel day two →
Workshop Basel day one (opens on the source site)
On this hot summer’s day in Basel, Switzerland, the seventh HTTP workshop started. These events tend to work roughly the same way and the people in the room are also to large extent familiar and known since previous editions. Forty people in a meeting room, where we take turns in doing short talks on HTTP … Continue reading Workshop Basel day one →
Post Mortem: HTTP Request Smuggling Vulnerability (opens on the source site)
Crystal ·
On 12 April 2026, we received a vulnerability report regarding an HTTP request smuggling vulnerability in HTTP::Server. The issue was caused by the HTTP request parser prioritizing the Content-Length header over the Transfer-Encoding header, which can lead to desynchronization when a proxy that prioritizes the Transfer-Encoding header sits in front of HTTP::Server for example. The vulnerability was patched in Crystal 1.20.0 and Crystal 1.19.2, following the mitigation from RFC 9112, Section 6.1 to always reject requests with both headers and to prioritize Transfer-Encoding then close the…
From Custom to Open: Scalable Network Probing and HTTP/3 Readiness with Prometheus (opens on the source site)
Slack ·
The Problem: Legacy Tooling and Its Limitations Currently, Slack utilizes a hybrid approach to network measurement, incorporating both internal (such as traffic between AWS Availability Zones) and external (monitoring traffic from the public internet into Slack’s infrastructure) solutions. These tools comprise a combination of commercial SaaS offerings and custom-built network testing solutions developed by our…
Funding the OSS Stack: HTTP Toolkit & Open Source in 2025 (opens on the source site)
HTTP Toolkit, like effectively all software businesses, depends on a huge quantity of open-source code for much of its fundamental functionality & infrastructure. Most of this is tirelessly maintained by volunteers, completely for free! This honestly is a great deal for the businesses, but it would be even better if these maintainers were actually rewarded for their hard work. As part of HTTP Toolkit's commitment to giving back to open source under the Open Source Pledge, a substantial chunk of revenue goes back into these open-source projects, to keep them healthy, reward maintainers for…
Debugging AWS API Gateway HTTP with OIDC-JWT authorizers (opens on the source site)
Learn how to debug silent failures in AWS API Gateway HTTP when your OIDC provider doesn't implement the .well-known/openid-configuration endpoint. Enable FailOnWarnings to catch these issues before they break your production deployment.
Faster Peer-to-Peer Retrieval in Browsers With Caching in the Delegated Routing HTTP Server (opens on the source site)
IPFS ·
How caching and active peer probing in the Someguy, the Delegated Routing server accelerates peer-to-peer content retrieval in browsers and mobile applications.
🌳 IPFS Newsletter 205: HTTP, P2P in browsers, Kubo speedup & more (opens on the source site)
IPFS ·
The IPFS Newsletter is back, with many exciting updates to share: HTTP support across the IPFS stack, P2P in browsers, Kubo speedup, and more.
HTTP/3 is everywhere but nowhere (opens on the source site)
HTTP/3 has been in development since at least 2016, while QUIC (the protocol beneath it) was first introduced by Google way back in 2013. Both are now standardized, supported in 95% of users' browsers, already used in 32% of HTTP requests to Cloudflare, and support is advertised by 35% of websites (through alt-svc or DNS) in the HTTP Archive dataset. We've developed a totally new version of HTTP, and we're on track to migrate more than 1/3 of web traffic to it already! This is astonishing progress. At the same time, neither QUIC nor HTTP/3 are included in the standard libraries of any major…
HTTP Toolkit is joining the Open Source Pledge (opens on the source site)
The Open Source Pledge is a new push to make companies commit to funding the maintainers of the open-source software they depend on, and to publicly recognize the ones that do. HTTP Toolkit has donated back to maintainers for a few years now, but joining the Open Source Pledge today means formally committing to that, and to doing so publicly with a sustainable minimum level ($2000 per full-time developer, or higher) indefinitely into the future. What is the Open Source Pledge? HTTP Toolkit (and effectively 100% of other software businesses) depends on a huge quantity of open-source code for…
ERR_PROXY_CONNECTION_FAILED errors with HTTP proxies (opens on the source site)
If you're using a local debugging proxy tool like HTTP Toolkit, you might run into the dreaded ERR_PROXY_CONNECTION_FAILED error in Chrome and other similar apps. This can be a very frustrating and unhelpful error! There's only a few possible causes though, and it's usually easy to fix. The Simple Case The simplest explanation is exactly what it says: the browser can't connect to your proxy. In the simple case this may be caused by a basic connection issue: you have the address, port or some authentication details wrong, or the details are correct but the proxy is just not reachable on your…
Scalable JSON Streaming with HTTP and Go - Ep.5 (opens on the source site)
Introduction: Welcome to the final episode of the JSON for Engineers series! In this concluding session, we tackle the challenges of working with large JSON datasets, exploring efficient strategies for streaming data while minimizing memory usage. These techniques enable developers to handle massive payloads without overburdening system resources, ensuring scalable and cost-effective applications. JSON Streaming: Using JSON Lines for memory-efficient data transmission. HTTP Chunked Encoding: Leveraging HTTP/1.1 chunked transfer encoding for streaming large datasets. Practical Error Handling:…
Debugging WebRTC, IPFS & Ethereum with HTTP Toolkit (opens on the source site)
HTTP is important on the web, but as other alternative protocols grow popular in networked applications, it's often important to be able to capture, debug and mock those too. I've been working on expanding HTTP Toolkit's support for this over the past year (as one part of a project funded by EU Horizon's Next Generation Internet initiative), to extend HTTP Toolkit to cover three additional rising protocols that are often used alongside simple HTTP in decentralized web applications: WebRTC, IPFS & Ethereum. This is now live! If you're using HTTP Toolkit to intercept browsers, and a web…
Golang: Making HTTP Requests (opens on the source site)
Go aka Golang is a very promising programming language with a lot of potential. It’s very performant, easy to grasp and maintain, productive and backed by Google. In our earlier posts, we have tried to provide guidelines to learn Go and later we saw how to work with JSON in Go. In this blog post, we’re […] The post Golang: Making HTTP Requests appeared first on Abu Ashraf Masnun.
How To Parallelize Ruby HTTP Requests (opens on the source site)
It turns out that managing web requests is quite important when doing web development. A web application backed by an external or internal API can issue a lot of requests when rendering a seemingly simple web page. How those requests are made and in what order is very important. With improper parallelization, an end user’s entire experience can go from delightful to horrific in a matter of seconds. The Build Up A basic Ruby on Rails application might have the following features: A User can create a favorite of an item, creating a FavoriteItem. A User can add an item to their wishlist,…
Use Apache HTTP Client on Android SDK 23 (opens on the source site)
With the Android M SDK (API 23), Google removed the Apache HTTP Client library. It was deprecated since API 22, and Google recommended to use HttpURLConnection instead since API 9. While the classes are still bundled in Android 6 ROMs, it won't be long until we see them completely go away. Some applications are still relying on this library, and need to be updated to use the SDK 23, without having time/budget/whatever required to switch from HTTP Client. While I strongly recommend you to still take time to move to something else (there are many high-level libraries, like OkHttp or Ion, or you…
Related topics
This page is generated automatically from the engineering blogs we follow. Every post links to its source, where it was published. See all sources.