harden runtime config and automate first-run permissions

Run the container as a non-root user in production to fail fast on insecure deployments. Add DEBUG env-based request/response logging for container diagnostics, and introduce a one-shot init-permissions service in docker-compose so fresh installs automatically fix data/uploads ownership for SQLite write access.
This commit is contained in:
fgbona
2026-03-30 13:19:01 -03:00
parent d04629605e
commit 10ebf46a98
4 changed files with 50 additions and 0 deletions

View File

@@ -1,3 +1,4 @@
PORT=3001
JWT_SECRET=your-super-secret-jwt-key-change-in-production
NODE_ENV=development
DEBUG=false