# Required: a long random secret for signing JWTs. # Generate with: openssl rand -base64 48 SECRET_KEY=change-me-to-a-long-random-string # Host directory where stack folders (compose.yaml + .env) are stored. # This MUST be the same path on the host and is bind-mounted into the backend. STACKS_HOST_DIR=./data/stacks # Allowed CORS origin(s) for the API (comma separated). The bundled frontend # proxies /api, so this only matters if you call the API from another origin. CORS_ORIGINS=http://localhost:5009