# Next.js NEXT_PUBLIC_APP_URL=http://localhost:3000 # API server URL (server-only — non esporre al browser) API_URL=http://localhost:4000 # Better Auth (deve coincidere con apps/api/.env) # Genera un secret a 32+ byte: `openssl rand -base64 32` BETTER_AUTH_SECRET= BETTER_AUTH_URL=http://localhost:3000 # Database (Better Auth usa @ketopath/db, che legge DATABASE_URL) DATABASE_URL=postgresql://luciano:luciano%40@localhost:5432/ketopath?schema=public # Cifratura at-rest dei campi sanitari (vedi ADR 0002). # DEVE essere identica a apps/api/.env. PRISMA_FIELD_ENCRYPTION_KEY= # Google OAuth (configurato a fine progetto) # GOOGLE_CLIENT_ID= # GOOGLE_CLIENT_SECRET= # Sentry — error tracking (lascia vuoto per disabilitare) # NEXT_PUBLIC_SENTRY_DSN= # Per il source-map upload in produzione (opzionale): # SENTRY_AUTH_TOKEN= # SENTRY_ORG= # SENTRY_PROJECT=