How would you handle cross-origin requests (CORS) in a REST API?
Short answer: Configure CORS policy on the server. Allow specific origins, headers, and methods. π Example in ASP.NET Core: services.AddCors(options => { options.AddPolicy("MyPolicy", builder => builder.WithOrigins(" .AllowAnyHeader() .AllowAnyMethod()); }); Apply with app.UseCors("MyPolicy");.
Real-world example (ShopNest)
Creating an order is POST /api/orders β 201 with Location header. Fetching is GET /api/orders/{id} β 200 or 404.
Say this in the interview
- Define β one clear sentence (the short answer above).
- Example β relate it to a project like ShopNest or your real work.
- Trade-off β when you would not use it.
Share this Q&A
Share preview image: https://www.toolliyo.com/images/toolliyo-logo.png