aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorprovokateurin <kate@provokateurin.de>2025-01-07 15:41:19 +0100
committerprovokateurin <kate@provokateurin.de>2025-01-07 15:41:19 +0100
commit11feecf7726f6bbd5cf478bd7d8bc03abb00cde8 (patch)
tree79405824e6c2da5e697fb3dae2bf8e13e11a39c0
parentbbba8b4fe2afef2f207611dc7eec818463b581ba (diff)
downloadnextcloud-server-docs/http/cors-attribute.tar.gz
nextcloud-server-docs/http/cors-attribute.zip
docs(HTTP): Add proper docs for CORS attributedocs/http/cors-attribute
Signed-off-by: provokateurin <kate@provokateurin.de>
-rw-r--r--lib/public/AppFramework/Http/Attribute/CORS.php4
1 files changed, 3 insertions, 1 deletions
diff --git a/lib/public/AppFramework/Http/Attribute/CORS.php b/lib/public/AppFramework/Http/Attribute/CORS.php
index 2c3eac362cf..ff639635635 100644
--- a/lib/public/AppFramework/Http/Attribute/CORS.php
+++ b/lib/public/AppFramework/Http/Attribute/CORS.php
@@ -12,7 +12,9 @@ namespace OCP\AppFramework\Http\Attribute;
use Attribute;
/**
- * Attribute for controller methods that can also be accessed by not logged-in user
+ * Attribute for controller methods that can also be accessed by other websites.
+ * See https://developer.mozilla.org/en-US/docs/Web/HTTP/CORS for an explanation of the functionality and the security implications.
+ * See https://docs.nextcloud.com/server/latest/developer_manual/digging_deeper/rest_apis.html on how to implement it in your controller.
*
* @since 27.0.0
*/