summaryrefslogtreecommitdiff
path: root/.env.control.example
blob: fd29a9910d133c6e1cc3793cf508cd58d296cf91 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
AIGW_SERVER_ADDRESS=:8080
AIGW_PUBLIC_ADDRESS=:8080
AIGW_ADMIN_ADDRESS=:8081
AIGW_WEBHOOK_ADDRESS=:8082
AIGW_OPERATIONS_ADDRESS=:9090
# Empty means direct connections only; add only your load balancer CIDRs.
AIGW_TRUSTED_PROXY_CIDRS=
AIGW_REQUIRE_HTTPS=false
AIGW_DEPLOYMENT_REGION=
AIGW_POSTGRES_USER=aigw-local
AIGW_POSTGRES_PASSWORD=replace-with-a-long-random-password
AIGW_POSTGRES_DB=aigw-local
AIGW_DATABASE_URL=postgres://aigw-local:replace-with-a-long-random-password@127.0.0.1:5432/aigw-local?sslmode=disable
AIGW_DATABASE_URL_DOCKER=postgres://aigw-local:replace-with-a-long-random-password@postgres:5432/aigw-local?sslmode=disable
AIGW_REDIS_URL=redis://127.0.0.1:6379/0
AIGW_REDIS_URL_DOCKER=redis://redis:6379/0
# base64 of exactly 32 random bytes; generate with: openssl rand -base64 32
AIGW_CREDENTIAL_KEY=replace-with-base64-32-byte-key
# Comma-separated prior keys during a rotation window; remove after re-encryption.
AIGW_CREDENTIAL_PREVIOUS_KEYS=
AIGW_ADMIN_TOKEN=replace-with-a-long-random-admin-token
AIGW_PUBLIC_URL=http://localhost:8081/admin/
AIGW_INFERENCE_PUBLIC_URL=http://localhost:8080
AIGW_WEBAUTHN_RP_ID=localhost
AIGW_WEBAUTHN_ORIGINS=http://localhost:8081
AIGW_SMTP_FROM_ADDRESS=no-reply@aigw.local
AIGW_SMTP_ADDRESS=127.0.0.1:1025
AIGW_SMTP_ADDRESS_DOCKER=mailpit:1025
# Leave both empty for a local Mailpit server; set both through a secret manager in production.
AIGW_SMTP_USERNAME=
AIGW_SMTP_PASSWORD=
# HMAC-SHA256 secret for normalized bounce/complaint callbacks. Inject from a secret manager.
AIGW_MAIL_FEEDBACK_SECRET=
# Prefer a restricted test key (rk_test_) with only the permissions documented in README.
# Automatic top-up additionally requires Setup Intents Read and Payment Intents Write.
AIGW_STRIPE_ENABLED=false
AIGW_STRIPE_API_KEY=replace-with-a-stripe-restricted-key
# Development only: use a separate key with Debugging Tools Write for Stripe CLI.
AIGW_STRIPE_CLI_API_KEY=replace-with-a-separate-cli-restricted-key
AIGW_STRIPE_WEBHOOK_SECRET=replace-with-a-webhook-signing-secret
AIGW_STRIPE_SUCCESS_URL=http://localhost:8081/admin/?topup=success
AIGW_STRIPE_CANCEL_URL=http://localhost:8081/admin/?topup=cancel
AIGW_STRIPE_PORTAL_RETURN_URL=http://localhost:8081/admin/?billing=portal
AIGW_STRIPE_AUTOMATIC_TAX_ENABLED=false
AIGW_STRIPE_TAX_REGISTRATION_CONFIRMED=false
# Set only after a tax adviser confirms the canonical Stripe Tax code for the product.
AIGW_STRIPE_PRODUCT_TAX_CODE=
AIGW_SETTLEMENT_SPOOL_PATH=/var/lib/aigw/settlements.jsonl