diff --git a/src/cartsnitch_api/middleware/cors.py b/src/cartsnitch_api/middleware/cors.py index 0e6a4ae..3bba4af 100644 --- a/src/cartsnitch_api/middleware/cors.py +++ b/src/cartsnitch_api/middleware/cors.py @@ -11,6 +11,6 @@ def add_cors_middleware(app: FastAPI) -> None: CORSMiddleware, allow_origins=settings.cors_origins, allow_credentials=True, - allow_methods=["*"], - allow_headers=["*"], + allow_methods=["GET", "POST", "PUT", "DELETE", "PATCH", "OPTIONS"], + allow_headers=["Content-Type", "Authorization", "Accept", "Origin", "X-Requested-With"], )