Use this little website to test if a URL is setup correctly to work with CORS.
Shareable link: https://cors-test.codehappy.dev/?url=https%3A%2F%2Fsitemap.xml
It does not have the access-control-allow-origin
header set to *
. Without this header, requests from other domains cannot be made to it via a users browser.
If you have access to the server for the URL, you'll need to modify it to add the access-control-allow-origin
header. If you do not have access, you'll need to upload the file somewhere else.
These are the response headers received when making the request.
cache-control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0
cf-connection-close: close
cf-ray: 92b01035b6a88728-ORD
connection: keep-alive
content-length: 16
content-type: text/plain; charset=UTF-8
date: Fri, 04 Apr 2025 10:18:43 GMT
expires: Thu, 01 Jan 1970 00:00:01 GMT
referrer-policy: same-origin
server: cloudflare
x-frame-options: SAMEORIGIN
CORS tester was built by @mscccc. The code is available on GitHub. Sponsored by HTML/CSS to Image.