cfheader( name="Access-Control-Allow-Origin" value="*" );
cfheader( name="Access-Control-Allow-Methods" value="GET, POST, PUT, PATCH, POST, DELETE, OPTIONS" );
cfheader( name="Access-Control-Allow-Headers" value="Authorization, Origin, Content-Type, X-Auth-Token, X-Requested-By, X-Requested-With" );
// Also for CORS compliance, an OPTIONS request must return 200 and the above headers. No data is required.
if (
StructKeyExists(request, "CGI")
&& StructKeyExists(request.CGI, "request_method")
&& request.CGI.request_method eq "OPTIONS"
) {
abort;
}