77 lines
3.0 KiB
Bash
77 lines
3.0 KiB
Bash
# =============================================================================
|
|
# Environment Configuration
|
|
# =============================================================================
|
|
# Copy this file to .env.local and fill in your actual values
|
|
# Never commit .env.local to version control
|
|
# =============================================================================
|
|
|
|
# -----------------------------------------------------------------------------
|
|
# SYSTEM & DEPLOYMENT
|
|
# -----------------------------------------------------------------------------
|
|
NIXPACKS_NODE_VERSION=22
|
|
|
|
# -----------------------------------------------------------------------------
|
|
# DATABASE
|
|
# -----------------------------------------------------------------------------
|
|
# PostgreSQL connection string
|
|
DATABASE_URL="postgresql://user:password@localhost:5432/grounds"
|
|
|
|
# -----------------------------------------------------------------------------
|
|
# APPLICATION URLS
|
|
# -----------------------------------------------------------------------------
|
|
# Base URL of the application (client-accessible)
|
|
NEXT_PUBLIC_SITE_URL="https://localhost:3000"
|
|
|
|
# Auth callback URL
|
|
NEXT_PUBLIC_APP_URL="https://localhost:3000"
|
|
|
|
# Used by Better Auth trusted origins and auth client baseURL (same as NEXT_PUBLIC_SITE_URL)
|
|
NEXT_PUBLIC_BASE_URL="https://localhost:3000"
|
|
|
|
# -----------------------------------------------------------------------------
|
|
# BETTER AUTH
|
|
# -----------------------------------------------------------------------------
|
|
# Better Auth configuration
|
|
# URL must match your app URL (with protocol)
|
|
BETTER_AUTH_URL="https://localhost:3000"
|
|
|
|
# Secret key for signing tokens (generate with: openssl rand -base64 32)
|
|
BETTER_AUTH_SECRET="your-secret-key-here"
|
|
|
|
# -----------------------------------------------------------------------------
|
|
# AUTHENTICATION
|
|
# -----------------------------------------------------------------------------
|
|
# Google OAuth credentials (required)
|
|
GOOGLE_CLIENT_ID=""
|
|
GOOGLE_CLIENT_SECRET=""
|
|
|
|
# Discord OAuth credentials (required)
|
|
DISCORD_CLIENT_ID=""
|
|
DISCORD_CLIENT_SECRET=""
|
|
|
|
# -----------------------------------------------------------------------------
|
|
# STORAGE (S3 COMPATIBLE)
|
|
# -----------------------------------------------------------------------------
|
|
# S3-compatible credentials for file storage
|
|
S3_ACCESS_KEY_ID=""
|
|
S3_SECRET_ACCESS_KEY=""
|
|
S3_BUCKET_NAME=""
|
|
S3_PUBLIC_URL=""
|
|
|
|
# -----------------------------------------------------------------------------
|
|
# PASSKEY (WebAuthn)
|
|
# -----------------------------------------------------------------------------
|
|
# RP ID: Your domain without protocol (e.g., "localhost" or "deckyvault.xyz")
|
|
RP_ID="localhost"
|
|
|
|
# RP Name: Human-readable name shown in passkey prompts
|
|
RP_NAME="DeckyVault"
|
|
|
|
# -----------------------------------------------------------------------------
|
|
# EMAIL
|
|
# -----------------------------------------------------------------------------
|
|
# Resend API key for sending OTP emails (optional — falls back to console logging)
|
|
RESEND_API_KEY=""
|
|
|
|
# Email sender address
|
|
EMAIL_FROM="DeckyVault <noreply@deckyvault.xyz>" |