Variable: IDENTITY_HEADERS
constIDENTITY_HEADERS: readonly ["authorization","x-cart-secret"]
Header-level identity signals. Their presence keeps a request on POST (with
credentials) instead of the shared cacheable GET. Mirror of backend
IDENTITY_HEADERS; compared case-insensitively.