See #144538-162: User logout is vulnerable to CSRF β
According to https://caniuse.com/?search=sec-fetch-dest browser support is very good, however this is still a draft spec.
Active
11.0 π₯
Last updated about 18 hours ago
Unsure if we can also guarantee that CDNs/reverse proxies/etc will not remove this header.