I would like to be able to include a nonce in the canonical string for added security. Would you be in favor of adding this feature?
If not, do you have any suggestions for a workaround? In my use case, I think I could put a nonce in the request body and Content-MD5. Is this reasonable?