Files
2026-06-20 19:00:11 -05:00

30 lines
1.0 KiB
Bash

# Copy to backend/.env for local dev (Makefile passes DATABASE_URL explicitly).
# --- Database ---
DATABASE_URL=postgres://idea:idea@localhost:5432/idea?sslmode=disable
# --- HTTP server ---
LISTEN_ADDR=:8080
# Comma-separated allowed CORS origins (the SPA origin). Empty = same-origin only.
ALLOWED_ORIGINS=http://localhost:5173
# Set true when served over HTTPS so the session cookie gets the Secure flag.
COOKIE_SECURE=false
# Session lifetime.
SESSION_TTL=2h
# 32+ byte random secret used to sign session cookies. Generate with:
# openssl rand -base64 48
SESSION_SECRET=dev-only-insecure-change-me-0000000000000000
# --- Rate limiting (per client IP, on /api/auth) ---
AUTH_RATE_PER_MINUTE=10
AUTH_RATE_BURST=5
# --- GitHub App ---
GITHUB_APP_ID=123456
GITHUB_APP_INSTALLATION_ID=12345678
# Path to the App private key PEM (mounted as a secret in production).
GITHUB_APP_PRIVATE_KEY_FILE=./github-app.private-key.pem
# Optional: GitHub Enterprise base URLs. Leave blank for github.com.
GITHUB_API_BASE=
GITHUB_GRAPHQL_URL=