It\'s probably fine to have session information in the HEADER for POST methods. But how would doing this for GET methods affect the users ability to call this method from a