30 lines
1.0 KiB
Bash
30 lines
1.0 KiB
Bash
# Copy to backend/.env for local dev (Makefile passes DATABASE_URL explicitly).
|
|
|
|
# --- Database ---
|
|
DATABASE_URL=postgres://idea:idea@localhost:5432/idea?sslmode=disable
|
|
|
|
# --- HTTP server ---
|
|
LISTEN_ADDR=:8080
|
|
# Comma-separated allowed CORS origins (the SPA origin). Empty = same-origin only.
|
|
ALLOWED_ORIGINS=http://localhost:5173
|
|
# Set true when served over HTTPS so the session cookie gets the Secure flag.
|
|
COOKIE_SECURE=false
|
|
# Session lifetime.
|
|
SESSION_TTL=2h
|
|
# 32+ byte random secret used to sign session cookies. Generate with:
|
|
# openssl rand -base64 48
|
|
SESSION_SECRET=dev-only-insecure-change-me-0000000000000000
|
|
|
|
# --- Rate limiting (per client IP, on /api/auth) ---
|
|
AUTH_RATE_PER_MINUTE=10
|
|
AUTH_RATE_BURST=5
|
|
|
|
# --- GitHub App ---
|
|
GITHUB_APP_ID=123456
|
|
GITHUB_APP_INSTALLATION_ID=12345678
|
|
# Path to the App private key PEM (mounted as a secret in production).
|
|
GITHUB_APP_PRIVATE_KEY_FILE=./github-app.private-key.pem
|
|
# Optional: GitHub Enterprise base URLs. Leave blank for github.com.
|
|
GITHUB_API_BASE=
|
|
GITHUB_GRAPHQL_URL=
|