From 49d877486c7c5c31edbc25fca687a0130888f1c4 Mon Sep 17 00:00:00 2001 From: Mo Tarbin Date: Sun, 30 Jun 2024 22:58:33 -0400 Subject: refactor: Update server configuration to allow specific CORS origins --- main.go | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) (limited to 'main.go') diff --git a/main.go b/main.go index 3ee2bbf..41ef02f 100644 --- a/main.go +++ b/main.go @@ -109,7 +109,8 @@ func newServer(lc fx.Lifecycle, cfg *config.Config, db *gorm.DB, notifier *notif WriteTimeout: cfg.Server.WriteTimeout, } config := cors.DefaultConfig() - config.AllowAllOrigins = true + config.AllowAllOrigins = !cfg.IsDoneTickDotCom + config.AllowOrigins = cfg.Server.CorsAllowOrigins config.AllowCredentials = true config.AddAllowHeaders("Authorization", "secretkey") r.Use(cors.New(config)) -- cgit