@@ -16,9 +16,9 @@ public function __construct(IRequest $request) {
1616 public function afterController ($ controller , $ methodName , Response $ response ) {
1717 $ corsMethods ="GET, PUT, POST, OPTIONS, DELETE, PATCH " ;
1818 $ corsAllowedHeaders ="*, allow, accept, authorization, content-type, dpop, slug " ;
19- $ corsMaxAge =1728000 ;
19+ $ corsMaxAge =" 1728000 " ;
2020 $ corsExposeHeaders ="Authorization, User, Location, Link, Vary, Last-Modified, ETag, Accept-Patch, Accept-Post, Updates-Via, Allow, WAC-Allow, Content-Length, WWW-Authenticate, MS-Author-Via " ;
21- $ corsAllowCredentials =true ;
21+ $ corsAllowCredentials =" true " ;
2222
2323 if (isset ($ this ->request ->server ['HTTP_ORIGIN ' ])) {
2424 $ corsAllowOrigin = $ this ->request ->server ['HTTP_ORIGIN ' ];
@@ -29,9 +29,11 @@ public function afterController($controller, $methodName, Response $response) {
2929 $ response ->addHeader ('Access-Control-Allow-Origin ' , $ corsAllowOrigin );
3030 $ response ->addHeader ('Access-Control-Allow-Methods ' , $ corsMethods );
3131 $ response ->addHeader ('Access-Control-Allow-Headers ' , $ corsAllowedHeaders );
32- $ response ->addHeader ('Access-Control-Max-Age ' , ( string ) $ corsMaxAge );
32+ $ response ->addHeader ('Access-Control-Max-Age ' , $ corsMaxAge );
3333 $ response ->addHeader ('Access-Control-Allow-Credentials ' , $ corsAllowCredentials );
3434 $ response ->addHeader ('Access-Control-Expose-Headers ' , $ corsExposeHeaders );
3535 $ response ->addHeader ('Accept-Patch ' , 'text/n3 ' );
36+
37+ return $ response ;
3638 }
3739 }
0 commit comments