From 7ea44b1b1111b9d3ccd770ed94815de2b3a3ff79 Mon Sep 17 00:00:00 2001 From: Caffrey Date: Mon, 13 Apr 2026 14:31:26 +0800 Subject: [PATCH] fix: remove session bootstrap frontend config from compose Per reviewer feedback: exposing SKILLHUB_WEB_AUTH_SESSION_BOOTSTRAP_* in the compose without matching SKILLHUB_AUTH_SESSION_BOOTSTRAP_ENABLED on the server would cause 403 errors when frontend attempts bootstrap. Keep this PR focused on direct auth only. Bootstrap variables are still handled in 30-runtime-config.sh with false defaults, so runtime-config.js will have authSessionBootstrapEnabled: "false" and frontend will not trigger bootstrap. --- compose.release.yml | 3 --- 1 file changed, 3 deletions(-) diff --git a/compose.release.yml b/compose.release.yml index 17fc9f89..1b878731 100644 --- a/compose.release.yml +++ b/compose.release.yml @@ -117,9 +117,6 @@ services: SKILLHUB_PUBLIC_BASE_URL: ${SKILLHUB_PUBLIC_BASE_URL:-} SKILLHUB_WEB_AUTH_DIRECT_ENABLED: ${SKILLHUB_WEB_AUTH_DIRECT_ENABLED:-false} SKILLHUB_WEB_AUTH_DIRECT_PROVIDER: ${SKILLHUB_WEB_AUTH_DIRECT_PROVIDER:-} - SKILLHUB_WEB_AUTH_SESSION_BOOTSTRAP_ENABLED: ${SKILLHUB_WEB_AUTH_SESSION_BOOTSTRAP_ENABLED:-false} - SKILLHUB_WEB_AUTH_SESSION_BOOTSTRAP_PROVIDER: ${SKILLHUB_WEB_AUTH_SESSION_BOOTSTRAP_PROVIDER:-} - SKILLHUB_WEB_AUTH_SESSION_BOOTSTRAP_AUTO: ${SKILLHUB_WEB_AUTH_SESSION_BOOTSTRAP_AUTO:-false} depends_on: server: condition: service_healthy