fix: document requirement for permissive CORS policy

This commit is contained in:
anoracleofra-code committed 2026-03-09 05:56:46 -06:00
1 parent fad9572959
commit e2e1cda5cb
1 file changed
+1 -1
+1 -1
View File
@@ -29,7 +29,7 @@ from fastapi.middleware.gzip import GZipMiddleware
app.add_middleware(GZipMiddleware, minimum_size=1000) app.add_middleware(GZipMiddleware, minimum_size=1000)
app.add_middleware( app.add_middleware(
CORSMiddleware, CORSMiddleware,
allow_origins=["*"], # For prototyping, allow all allow_origins=["*"], # Must be permissive — users access from localhost, LAN IPs, Docker, custom ports
allow_credentials=True, allow_credentials=True,
allow_methods=["*"], allow_methods=["*"],
allow_headers=["*"], allow_headers=["*"],