diff --git a/cors.go b/cors.go index d5b912a..865b1fe 100644 --- a/cors.go +++ b/cors.go @@ -14,7 +14,7 @@ type Config struct { // AllowedOrigins is a list of origins a cross-domain request can be executed from. // If the special "*" value is present in the list, all origins will be allowed. - // Default value is ["*"] + // Default value is [] AllowOrigins []string // AllowOriginFunc is a custom function to validate the origin. It take the origin @@ -28,8 +28,6 @@ type Config struct { // AllowedHeaders is list of non simple headers the client is allowed to use with // cross-domain requests. - // If the special "*" value is present in the list, all headers will be allowed. - // Default value is [] but "Origin" is always appended to the list. AllowHeaders []string // AllowCredentials indicates whether the request can include user credentials like