Only set API CORS headers in development
All checks were successful
continuous-integration/drone/push Build is passing

In production, this is the reverse proxy's responsibility
This commit is contained in:
Râu Cao 2024-01-22 15:35:13 +03:00
parent fafc5d8f6f
commit 281938dd64
Signed by: raucao
GPG Key ID: 37036C356E56CC51

View File

@ -29,6 +29,7 @@ class Api::BtcpayController < Api::BaseController
end
def set_cors_access_control_headers
return unless Rails.env.development?
headers['Access-Control-Allow-Origin'] = "*"
headers['Access-Control-Allow-Headers'] = "*"
headers['Access-Control-Allow-Methods'] = "GET"