Remove unused CSRF token in push notification registration script #161

Merged
jothi merged 1 commits from ranjith-dev into master 2026-01-31 12:29:24 +00:00

View File

@@ -42,7 +42,7 @@
<script> <script>
const vapidKey = "{{ config('webpush.vapid.public_key') }}"; const vapidKey = "{{ config('webpush.vapid.public_key') }}";
const csrfToken = "{{ csrf_token() }}"; // const csrfToken = "{{ csrf_token() }}";
async function registerPush() { async function registerPush() {
if (!('serviceWorker' in navigator)) return; if (!('serviceWorker' in navigator)) return;
@@ -57,15 +57,14 @@
applicationServerKey: vapidKey applicationServerKey: vapidKey
}); });
await fetch('/push/subscribe', { await fetch('api/push/subscribe', {
method: 'POST', method: 'POST',
headers: { headers: {
'Content-Type': 'application/json', 'Content-Type': 'application/json',
'X-CSRF-TOKEN': csrfToken // 'X-CSRF-TOKEN': csrfToken
}, },
body: JSON.stringify(subscription) body: JSON.stringify(subscription)
}); });
alert("Push notifications enabled ✅"); alert("Push notifications enabled ✅");
} }
</script> </script>