Skip to main content

Simple env support of CORS settings for Fastapi applications

Project description

fastapi-cors

A simply scoped abstraction to provide CORS settings via environment variables to a Fastapi application.

Usage

from fastapi import FastAPI

# during this next line `fastapi_cors.env` will read environment variables from .env
from fastapi_cors import CORS 

app = FastAPI()

CORS(app)

Opinions

A health check route is optionally added that displays these (but not other) environment variables.

If you want to disable it, use the code below

from fastapi import FastAPI

# during this next line `fastapi_cors.env` will read environment variables from .env
from fastapi_cors import CORS 

app = FastAPI()

CORS(app, include_health_check=False)

Config

Configure FastAPI as usual. Extra arguments (that can be accessed from app.extra):

Name Default Description
HOST 0.0.0.0 Displayed in the Swagger title, with app.title.
PORT 8000 Where to mount the static directory. Disabled if value is falsy.
LOG_LEVEL info log level.
ALLOW_ORIGINS ["http://localhost","http://localhost:3000"] A list of origins that should be permitted to make cross-origin requests. E.g. ['https://example.org', 'https://www.example.org']. You can use ['*'] to allow any origin. These are the URLs clients can make requests from
ALLOWED_CREDENTIALS True Indicate that cookies should be supported for cross-origin requests. Also, allow_origins cannot be set to ['*'] for credentials to be allowed, origins must be specified.
ALLOWED_METHODS ["*"] A list of HTTP methods that should be allowed for cross-origin requests. Defaults to ['*'] to allow all standard methods. You can use ['GET'] to reduce the list.
ALLOWED_HEADERS ["Access-Control-Allow-Origin"] A list of HTTP request headers that should be supported for cross-origin requests. You can use ['*'] to allow all headers. The Accept, Accept-Language, Content-Language and Content-Type headers are always allowed for simple CORS requests

⚠️ allow_origins default is ["http://localhost","http://localhost:3000"], not [] (80 -> docs, 3000 -> frontend)

⚠️ allow_methods default is ["*"], not ["GET"]

⚠️ allowed_credentials default is True, not False

See the FastAPI documentation on CORS for more information

Example Env

Values will be cast into a list of str, as appropriate.

HOST=0.0.0.0
PORT=8000
LOG_LEVEL=info
ALLOW_ORIGINS=http://localhost,http://localhost:3000
ALLOWED_CREDENTIALS=True
ALLOWED_METHODS=*
ALLOWED_HEADERS=Access-Control-Allow-Origin

Note, this is not required unless you are changing a default or want to declare them all

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

fastapi-cors-0.0.5.tar.gz (4.3 kB view details)

Uploaded Source

Built Distribution

fastapi_cors-0.0.5-py3-none-any.whl (4.9 kB view details)

Uploaded Python 3

File details

Details for the file fastapi-cors-0.0.5.tar.gz.

File metadata

  • Download URL: fastapi-cors-0.0.5.tar.gz
  • Upload date:
  • Size: 4.3 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: pdm/2.7.4 CPython/3.11.4

File hashes

Hashes for fastapi-cors-0.0.5.tar.gz
Algorithm Hash digest
SHA256 f465bcb7b010f8e66787224b3e250ed491e36021d0820fac596019833add7997
MD5 1c83f6d0b8af4a8cac1f3b44ce3e6f73
BLAKE2b-256 f9dc65251cf0290dee2e949c318010e63987980f95817fa611d22bcb8ed96066

See more details on using hashes here.

File details

Details for the file fastapi_cors-0.0.5-py3-none-any.whl.

File metadata

File hashes

Hashes for fastapi_cors-0.0.5-py3-none-any.whl
Algorithm Hash digest
SHA256 b04651701f4e176483c7823fd7dd36f42684a6998b599b341d6bd46b9b0f68e0
MD5 7669de4c8bad66e3916855cd2b3ae4f8
BLAKE2b-256 48b49afe618db924339d65dfe5aa0fd89213d0b0065a68468536752173c05915

See more details on using hashes here.

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page