# Public app URL (used for OIDC redirect URIs, share links, etc.) NEXT_PUBLIC_APP_URL=https://fam.ginnoir.com # Postgres DATABASE_URL=postgres://famapp:famapp@localhost:5432/famapp # Auth.js AUTH_SECRET=replace-with-openssl-rand-base64-32 # OIDC (Authentik) AUTH_OIDC_ISSUER=https://auth.ginnoir.com/application/o/famapp/ AUTH_OIDC_CLIENT_ID=replace-me AUTH_OIDC_CLIENT_SECRET=replace-me # Web Push (generate with: pnpm vapid:generate) VAPID_PUBLIC_KEY= VAPID_PRIVATE_KEY= VAPID_SUBJECT=mailto:you@example.com # ntfy (optional fallback channel; leave blank to disable) NTFY_URL= NTFY_TOPIC= # Logging LOG_LEVEL=info