How to only allow same-origin in a flask request? [duplicate]

Solution
@app.route('/create-api')  
def create_api():  
  if "example.org" in str(request.environ['werkzeug.request']): 
      # code
  else:
      return "Error message", 401