Skip to main content
All configuration is server-only unless the variable name begins with NEXT_PUBLIC_. Do not commit .env.local, production parameter files, database URLs, session secrets, bootstrap keys, or private signing material.

Application and AWS runtime

Vercel session boundary

Migration and evidence commands

Test configuration

Values in .env.example are shapes and examples, not production credentials. Replace every placeholder through the appropriate secret or deployment system.