# Acess-Control-Allow-Headers CORS Error with API after updating discourse

**URL:** https://meta.discourse.org/t/acess-control-allow-headers-cors-error-with-api-after-updating-discourse/147716
**Category:** Support
**Created:** [April 12, 2020, 4:51pm UTC](https://meta.discourse.org/t/acess-control-allow-headers-cors-error-with-api-after-updating-discourse/147716 "2020-04-12T16:51:16Z")
**Posts on this page:** 1
**Showing post:** 8

<div class="post-metadata">

### Author: ![pablogg](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/pablogg/32/164759_2.png) [@pablogg](https://meta.discourse.org/u/pablogg)
#### Post date: [April 12, 2020, 7:14pm UTC](https://meta.discourse.org/t/acess-control-allow-headers-cors-error-with-api-after-updating-discourse/147716/8 "2020-04-12T19:14:16Z")

</div>

I have read the [User API keys specification](https://meta.discourse.org/t/user-api-keys-specification/48536) …

In my case I have SSO with a frontend app in javascript, Could I consuming the API without using the authorization UI for every user? I would like a way that a could use de api-username … is that possible?

Regards

---

_[View the full topic](https://meta.discourse.org/t/acess-control-allow-headers-cors-error-with-api-after-updating-discourse/147716)._
