Remove unused CSRF token in push notification registration script #161
@@ -42,7 +42,7 @@
|
||||
|
||||
<script>
|
||||
const vapidKey = "{{ config('webpush.vapid.public_key') }}";
|
||||
const csrfToken = "{{ csrf_token() }}";
|
||||
// const csrfToken = "{{ csrf_token() }}";
|
||||
|
||||
async function registerPush() {
|
||||
if (!('serviceWorker' in navigator)) return;
|
||||
@@ -57,15 +57,14 @@
|
||||
applicationServerKey: vapidKey
|
||||
});
|
||||
|
||||
await fetch('/push/subscribe', {
|
||||
await fetch('api/push/subscribe', {
|
||||
method: 'POST',
|
||||
headers: {
|
||||
'Content-Type': 'application/json',
|
||||
'X-CSRF-TOKEN': csrfToken
|
||||
// 'X-CSRF-TOKEN': csrfToken
|
||||
},
|
||||
body: JSON.stringify(subscription)
|
||||
});
|
||||
|
||||
alert("Push notifications enabled ✅");
|
||||
}
|
||||
</script>
|
||||
|
||||
Reference in New Issue
Block a user