The best you could hope for is to impose some manner of authentication scheme so that the client and server are known and uniquely identified to each other at each page request irrespective of session. Then and only then are all options on the table.
This becomes not trivial, but easily accomplished, if the browser were requesting the page from a localhost server.
Therefore, this request for pondering is summarily denied!
422