Releases: NGxDTV/NG-Anti-CORS
Release list
[Opera / Chrome] - Anti CORS 1.3
NG-Anti-CORS 1.3 π‘οΈ
The Ultimate CORS Enabler for Developers π
NG-Anti-CORS is a powerful browser extension that enables Cross-Origin Resource Sharing with a single click β perfect for testing APIs and debugging web apps in local environments. π§
Features β¨
- Easy to Use π±οΈ Β β One-click activation for any domain
- Domain-specific Control π Β β Enable CORS per-site
- Advanced Fetch & XHR Support π β Deep integration with browser request APIs
- Preflight Control π β Optional handling of CORS preflight (
OPTIONS) requests - All HTTP Methods π‘ β Basic mode supports GET, POST, HEAD and PUT; Advanced mode unlocks PATCH, DELETE, OPTIONS and the rest
- Visual Indicators π‘ β Color-coded icons show current status
- Save Settings πΎ β Keep your preferences after browser restarts
- Customizable Notifications π β Decide how and when toast notifications appear
- Supports Requests with Credentials* π β Cookies / auth headers pass through if the target server sends
Access-Control-Allow-Credentials: true - Lightweight πͺΆ β Pure Declarative Net Request, zero remote calls, minimal overhead
* Browsers require the target API to set Access-Control-Allow-Credentials: true; NG-Anti-CORS never injects that header automatically.
Installation π₯
1. Chrome Web Store (recommended)
- Open the Chrome / Edge / Opera listing
- Click Add to Chrome and confirm
2. Manual Installation
- Download the latest release .zip
- Unzip to any folder
- Open
chrome://extensions/(oredge://extensions/) - Enable Developer mode (top right)
- Click Load unpacked and select the unzipped folder
Opera users: Install the helper extension βInstall Chrome Extensionsβ first, then follow the Chrome steps.
Usage π
- Open a page that shows CORS errors
- Click the NG-Anti-CORS icon
- Toggle Enable CORS for the current domain
- (Optional) Toggle Preflight Request handling for advanced scenarios
- (Optional) Check Remember this setting to persist across restarts
- Reload the page β CORS restrictions are gone!
When NG-Anti-CORS is disabled for a domain, it leaves the browserβs security model untouched.
Understanding CORS Modes
| Mode | Enabled HTTP methods | Typical use-case |
|---|---|---|
| Basic (default) | GET, POST, PUT, HEAD | Simple REST calls, most front-end dev work |
| Advanced (Preflight) | Full method set: PATCH, DELETE, OPTIONS β¦ | APIs needing custom headers, credentials, complex verbs |
Enable Preflight Request handling when:
- You call APIs with PATCH, DELETE, OPTIONS, etc.
- Your requests include custom headers (e.g.
Authorization,X-Auth-Token) - You see βMethod not allowedβ or failed preflight in DevTools
- You need to send cookies or HTTP-auth cross-origin and the server supports it
Adjusting Settings βοΈ
- Click the NG-Anti-CORS icon
- Open the Settings tab
- Change notification duration, default toggles, β¦
- Click Save
For Developers π¨βπ»
Ideal for:
- Front-end devs consuming third-party APIs
- Testing local micro-services (e.g.
localhost:3000βοΈlocalhost:5000) - Debugging CORS errors in staging / prod
- Rapid API prototyping with tools like Postman, Swagger UI, etc.
Troubleshooting π§
- Verify the extension is active (green icon)
- Check that CORS is enabled for the current domain
- Hard-reload the page (Ctrl + F5)
- Inspect DevTools β Network for failing requests
- Confirm the target server actually blocks CORS β some errors originate elsewhere
Privacy & Security π
- No telemetry β zero personal data collected
- No remote servers β all logic runs locally via the Chrome Declarative Net Request API; no proxying
- Minimal storage β only remembers your per-domain toggles
Security notice: Use NG-Anti-CORS only in development or on trusted sites. Turning off CORS weakens standard browser protections.
Version History π
1.3
- Fixed stray notifications on untouched domains
- Exempted Google / YouTube CORS flow from modification
- Smarter detection of existing CORS headers
- Only shows notifications when relevant and respecting user settings
- Improved handling of protected Chrome/Edge pages
- Switched header ops from APPEND β SET to avoid duplicates
- Unique DNR rule IDs to bypass extension conflicts
- Performance tweaks: skip domains that donβt need CORS fixes
(Older logs: see CHANGELOG.md)
Contributing π€
- Fork β
git checkout -b feature/AmazingFeature - Commit β
git commit -m "feat: add AmazingFeature" - Push β
git push origin feature/AmazingFeature - Open a Pull Request β we β€οΈ PRs!
License π
MIT β see LICENSE.
Developed with β€οΈ for the web-dev community.
[Opera / Chrome] - Anti CORS 1.2
NG-Anti-CORS 1.2 π‘οΈ
The Ultimate CORS Enabler for Developers π
NG-Anti-CORS is a powerful browser extension that allows CORS (Cross-Origin Resource Sharing) requests with just one click. The perfect developer tool for testing APIs and debugging applications in local environments! π§
Features β¨
- Easy to Use π±οΈ - One-click activation for any domain
- Domain-specific Control π - Enable CORS requests only for specific domains
- Advanced Fetch & XHR Support π - Deep integration with browser request APIs
- Preflight Control π - Optional handling of CORS preflight requests
- All HTTP Methods π‘ - Support for GET, POST, PUT, PATCH, DELETE, OPTIONS, and more
- Visual Indicators π‘ - Color-coded icons show current status
- Save Settings πΎ - Retain your preferences even after browser restart
- Customizable Notifications π - Configure how and when notifications appear
- Lightweight πͺΆ - Minimal impact on browser performance
Installation π₯
-
Chrome Web Store (recommended):
- Download the latest Chrome / Opera release
- Once approved, you'll be able to find it by searching for "NG-Anti-CORS"
- Click "Add" and confirm the installation
-
Manual Installation:
- Download the latest release
- Unzip the file to a folder
- Open Chrome/Opera and navigate to
chrome://extensions/ - Enable "Developer mode" (top right)
- Click "Load unpacked" and select the extracted folder
Usage π
- Navigate to a website with CORS issues
- Click on the NG-Anti-CORS icon in the toolbar
- Enable the toggle for the current domain
- Optional: Enable "Preflight Request handling" for advanced CORS scenarios
- Optional: Check "Remember this setting for browser restart"
- Reload the page - CORS requests are now allowed!
Note: When the extension is not enabled for a domain, it doesn't modify the browser's default CORS behavior at all.
Understanding CORS Modes
NG-Anti-CORS now features two operational modes for more granular control:
1. Basic Mode (Default)
When you simply enable CORS for a domain, the extension will:
- Allow standard CORS for basic HTTP methods (GET, POST, HEAD)
- Work for most typical web requests and API calls
- Enable cross-origin access for simple content types
2. Advanced Mode (with Preflight Handling)
When you enable both CORS and "Preflight Request handling", the extension will:
- Support advanced HTTP methods (PATCH, DELETE, PUT, OPTIONS, etc.)
- Handle complex requests with custom headers
- Process preflight (OPTIONS) requests automatically
- Support requests with credentials
- Enable all CORS features for complex APIs
When to use Preflight Handling:
- When working with RESTful APIs that use methods beyond GET/POST
- When your requests include custom headers
- When seeing errors related to "Method not allowed" in preflight responses
- When using authentication with cross-origin requests
Adjusting Settings βοΈ
For advanced configurations:
- Click on the NG-Anti-CORS icon
- Select the "Settings" tab
- Adjust notification duration and other options
- Click "Save Settings"
For Developers π¨βπ»
This plugin is especially useful for:
- Frontend developers working with APIs
- Testing web applications in local development environments
- Debugging CORS issues in production environments
- API integration and testing
Troubleshooting π§
Plugin not working?
- Make sure the plugin is activated
- Check if CORS allowing is enabled for the current domain
- Completely reload the page (CTRL+F5)
- Check for errors in the developer tools (F12)
- Verify that the site is actually experiencing CORS issues that need to be bypassed
Privacy and Security π
NG-Anti-CORS:
- Collects no personal data
- Sends no information to remote servers
- Works completely locally in your browser
- Only stores your preferences for enabled domains
Version History π
Version 1.2
- Two-tier CORS Handling: Separated basic CORS handling from advanced preflight handling
- Fetch API Proxy: Added intelligent Fetch API proxying that respects extension state
- Method-based Control: Basic methods (GET/POST) work with just CORS enabled, advanced methods (PATCH/DELETE/etc.) require preflight option
- Advanced Preflight Handling: New toggle specifically for managing CORS preflight (OPTIONS) requests
- Better State Management: Fixed issue where the extension was active even when disabled
- Cross-component Communication: Enhanced messaging between content scripts and background processes
- Improved UI: Added preflight toggle with helpful descriptions
- Extended Method Support: Now properly supports all HTTP methods including PATCH, HEAD, PROPFIND and more
- Credentials Handling: Correctly processes requests with credentials based on preflight setting
- Comprehensive Error Handling: Added detailed error reporting for troubleshooting
Version 1.1
- Critical Fix: Corrected the core behavior of the extension. Previously, the extension was incorrectly blocking CORS when disabled. Now it correctly does not modify browser behavior when disabled.
- Improved UI Labels: Updated status messages and notifications to accurately reflect the extension's functionality
Version 1.0
- Initial release
Contributing π€
Contributions are welcome! If you want to help:
- Fork the repository
- Create a feature branch (
git checkout -b feature/AmazingFeature) - Commit your changes (
git commit -m 'Add some AmazingFeature') - Push to the branch (
git push origin feature/AmazingFeature) - Open a Pull Request
License π
This project is licensed under the MIT License - see the LICENSE file for details.
Developed with β€οΈ for the developer community
[Opera / Chrome] - Anti CORS 1.1
NG-Anti-CORS 1.1 π‘οΈ
The Ultimate CORS Enabler for Developers π
NG-Anti-CORS is a powerful browser extension that allows CORS (Cross-Origin Resource Sharing) requests with just one click. The perfect developer tool for testing APIs and debugging applications in local environments! π§
Features β¨
- Easy to Use π±οΈ - One-click activation for any domain
- Domain-specific Control π - Enable CORS requests only for specific domains
- Visual Indicators π‘ - Color-coded icons show current status
- Save Settings πΎ - Retain your preferences even after browser restart
- Customizable Notifications π - Configure how and when notifications appear
- Lightweight πͺΆ - Minimal impact on browser performance
Installation π₯
-
Chrome Web Store (recommended):
- Download the latest Chrome / Opera release
- Once approved, you'll be able to find it by searching for "NG-Anti-CORS"
- Click "Add" and confirm the installation
-
Manual Installation:
- Download the latest release
- Unzip the file to a folder
- Open Chrome/Opera and navigate to
chrome://extensions/ - Enable "Developer mode" (top right)
- Click "Load unpacked" and select the extracted folder
Usage π
- Navigate to a website with CORS issues
- Click on the NG-Anti-CORS icon in the toolbar
- Enable the toggle for the current domain
- Optional: Check "Remember this setting for browser restart"
- Reload the page - CORS requests are now allowed!
Note: When the extension is not enabled for a domain, it doesn't modify the browser's default CORS behavior at all.
Adjusting Settings βοΈ
For advanced configurations:
- Click on the NG-Anti-CORS icon
- Select the "Settings" tab
- Adjust notification duration and other options
- Click "Save Settings"
For Developers π¨βπ»
This plugin is especially useful for:
- Frontend developers working with APIs
- Testing web applications in local development environments
- Debugging CORS issues in production environments
- API integration and testing
Troubleshooting π§
Plugin not working?
- Make sure the plugin is activated
- Check if CORS allowing is enabled for the current domain
- Completely reload the page (CTRL+F5)
- Check for errors in the developer tools (F12)
- Verify that the site is actually experiencing CORS issues that need to be bypassed
Privacy and Security π
NG-Anti-CORS:
- Collects no personal data
- Sends no information to remote servers
- Works completely locally in your browser
- Only stores your preferences for enabled domains
Version History π
Version 1.1
- Critical Fix: Corrected the core behavior of the extension. Previously, the extension was incorrectly blocking CORS when disabled. Now it correctly does not modify browser behavior when disabled.
- Improved UI Labels: Updated status messages and notifications to accurately reflect the extension's functionality
Version 1.0
- Initial release
Contributing π€
Contributions are welcome! If you want to help:
- Fork the repository
- Create a feature branch (
git checkout -b feature/AmazingFeature) - Commit your changes (
git commit -m 'Add some AmazingFeature') - Push to the branch (
git push origin feature/AmazingFeature) - Open a Pull Request
License π
This project is licensed under the MIT License - see the LICENSE file for details.
Developed with β€οΈ for the developer community
[Opera / Chrome] - Anti CORS 1.0
NG-Anti-CORS 1.0 π‘οΈ
The Ultimate CORS Blocker for Developers π
NG-Anti-CORS is a powerful browser extension that bypasses CORS (Cross-Origin Resource Sharing) restrictions with just one click. The perfect developer tool for testing APIs and debugging applications in local environments! π§
Features β¨
- Easy to Use π±οΈ - One-click activation for any domain
- Domain-specific Control π - Enable CORS blocking only for specific domains
- Visual Indicators π‘ - Color-coded icons show current status
- Save Settings πΎ - Retain your preferences even after browser restart
- Customizable Notifications π - Configure how and when notifications appear
- Lightweight πͺΆ - Minimal impact on browser performance
Installation π₯
Note: This extension is not yet available in the Chrome Web Store as it's new and currently under review. We'll update this README once it's approved and published.
-
Chrome Web Store (recommended - coming soon):
- Once approved, you'll be able to find it by searching for "NG-Anti-CORS"
- Click "Add" and confirm the installation
-
Manual Installation:
- Download the latest release
- Unzip the file to a folder
- Open Chrome/Opera and navigate to
chrome://extensions/ - Enable "Developer mode" (top right)
- Click "Load unpacked" and select the extracted folder
Usage π
- Navigate to a website with CORS issues
- Click on the NG-Anti-CORS icon in the toolbar
- Enable the toggle for the current domain
- Optional: Check "Remember this setting for browser restart"
- Reload the page - CORS restrictions should now be bypassed!
Adjusting Settings βοΈ
For advanced configurations:
- Click on the NG-Anti-CORS icon
- Select the "Settings" tab
- Adjust notification duration and other options
- Click "Save Settings"
For Developers π¨βπ»
This plugin is especially useful for:
- Frontend developers working with APIs
- Testing web applications in local development environments
- Debugging CORS issues in production environments
- API integration and testing
Troubleshooting π§
Plugin not working?
- Make sure the plugin is activated
- Check if CORS blocking is enabled for the current domain
- Completely reload the page (CTRL+F5)
- Check for errors in the developer tools (F12)
Privacy and Security π
NG-Anti-CORS:
- Collects no personal data
- Sends no information to remote servers
- Works completely locally in your browser
- Only stores your preferences for enabled domains
Contributing π€
Contributions are welcome! If you want to help:
- Fork the repository
- Create a feature branch (
git checkout -b feature/AmazingFeature) - Commit your changes (
git commit -m 'Add some AmazingFeature') - Push to the branch (
git push origin feature/AmazingFeature) - Open a Pull Request
License π
This project is licensed under the MIT License - see the LICENSE file for details.
Developed with β€οΈ for the developer community