Hacker News new | ask | show | jobs
by zackify 2123 days ago
just use this https://cors-anywhere.herokuapp.com/

or just set all your cors headers to * on your server

3 comments

* is blocked by most browsers to avoid lazy developers putting their site wild open to abuse.
At least Chrome and Firefox don't block it. I've recently used something similar as an add-on until I did exactly what he said: manually setting a cors * header for that internal development server
Chrome and Firefox do not.

If that’s really the case with your browser.... set it to request.origin, so it’s always valid haha

Isn't that just begging for legal trouble?
Is that a MITM?