This extension bypasses the 'XMLHttpRequest' and 'fetch' rejections by altering the 'Access-Control-Allow-Origin' and 'Access-Control-Allow-Methods' headers for every request that the browser receives. You can activate the extension by pressing the action button. Also, use the right-click context menu over the action button to modify which headers the extension manipulates. You can also ask the extension not to overwrite these headers when the server returns values for them. The default values for the headers: Access-Control-Allow-Origin: request initiator or empty Access-Control-Allow-Methods': GET, PUT, POST, DELETE, HEAD, OPTIONS, PATCH, PROPFIND, PROPPATCH, MKCOL, COPY, MOVE, LOCK Access-Control-Allow-Methods: request initiator or empty Access-Control-Allow-Credentials: true Access-Control-Expose-Headers: request initiator or * Additional Features: 1. It can remove the following CSP-related headers: 'Content-Security-Policy', 'Content-Security-Policy-Report-Only', 'X-WebKit-CSP' and 'X-Content-Security-Policy'. 2. It can overwrite the returned 4xx status code from the server. Use this feature when a server does not support a method, but you want to pretend it does. 3. It can append necessary headers to pretend websites (local or remote hosts) support SharedArrayBuffer class. 4. It can permit cross-origin frame embedding (by removing the 'X-Frame-Options' header) to simplify remote page embedding during local development. 5. It can include or exclude the 'referer' and 'origin' headers when a server is sensitive to them to work appropriately. 6. The extension optionally uses the 'chrome.debugger' to overwrite 4xx status codes (in case a server does not support a method, you can use this feature to pretend the server accepts a response or supports an unsupported method). 7. The extension also optionally fixes CORS policies of redirected URLs. -- It is important to note that this extension fixes preflight requests to permit access to any custom header (when enabled). Links: 1. For reporting bugs, please use the link https://github.com/balvin-perrie/Access-Control-Allow-Origin---Unblock. 2. To have better control over CSP (content-security-policy), try my https://chrome.google.com/webstore/detail/csp-unblock/lkbelpgpclajeekijigjffllhigbhobd.
You can Follow the below Step By Step procedure to install the CORS Unblock Chrome Extension to your Chrome Web browser.
It is the CORS Unblock Chrome extension download link you can download and install Chrome Browser.
Lightweight CORS web development tool allows developers to modify Ajax responses Access-Control-Allow-Origin:*.
Cross Domain will help you to deal with cross domain - CORS problem. This is tool helpful when face with cross domain issue.
Angular DevTools extends Chrome DevTools adding Angular specific debugging and profiling capabilities.
Disable Content-Security-Policy for web application testing. When the icon is colored, CSP headers are disabled.
This plugin allows you to send cross-domain requests. You can also override Request Origin and CORS headers.
Add cors headers to response header.
Allows CORS requests from your localhost to any API by setting 'Access-Control-Allow-Origin: *' header
Always Disable Content-Security-Policy for web application testing. When the icon is colored, CSP headers are disabled.
Easily add (Access-Control-Allow-Origin: *) rule to the response header.
Mock or modify your HTTP requests to test, develop and demo your web application