Files
podcastic/.env.example
T
MichaelandClaude Haiku 4.5 f620ec614c security: require auth on MongoDB and Redis
Enable mongod --auth with root credentials from MONGO_USER/PASSWORD,
and redis-server --requirepass from REDIS_PASSWORD. App connection
strings now embed credentials. All secrets are required (no fallback)
so misconfiguration fails fast at compose time.

Co-Authored-By: Claude Haiku 4.5 <noreply@anthropic.com>
2026-04-18 07:25:38 +02:00

33 lines
1.2 KiB
Bash

# Backend Configuration
NODE_ENV=development
PORT=5000
# CORS — comma-separated list of allowed origins (e.g. https://podcastic.example.com,https://app.example.com)
# Leave empty in dev to allow all origins
CORS_ORIGIN=
# MongoDB Configuration (REQUIRED — no defaults)
MONGO_USER=podcastic
MONGO_PASSWORD=replace_with_strong_password
# Used by the app — credentials must match MONGO_USER/MONGO_PASSWORD above
MONGODB_URI=mongodb://podcastic:replace_with_strong_password@mongodb:27017/podcastic?authSource=admin
# Redis Configuration (REQUIRED — no defaults)
REDIS_PASSWORD=replace_with_strong_password
REDIS_URL=redis://:replace_with_strong_password@redis:6379
# JWT Configuration (REQUIRED — min 32 chars, no defaults accepted)
# Generate: openssl rand -base64 32
JWT_SECRET=
JWT_EXPIRES_IN=7d
JWT_REFRESH_EXPIRES_IN=30d
# Podcast API (PodcastIndex) - OPTIONAL but recommended for search feature
# Get free API keys at: https://podcastindex-api.com/
PODCAST_INDEX_API_KEY=
PODCAST_INDEX_API_SECRET=
# Frontend Configuration (only needed for local dev without Docker)
# In Docker, the frontend is served by the backend itself — no VITE_API_URL needed
VITE_API_URL=/api