Building a sound foundation
Resolving TLS issues
Preventing information disclosure
Setting HTTP security headers
Using CORS
MDN Web docs: Cross-Origin Resource Sharing (CORS)
MDN Web docs: Access-Control-Allow-Origin
CORS on Nginx
Nginx Access-Control-Allow-Origin and CORS