Go 1.25 introduced a new http.CrossOriginProtection middleware to the standard library — and it got me wondering:| www.alexedwards.net