# Zitadel OIDC Configuration # For local dev, run: ./docker/setup-zitadel.sh (auto-generates this file) AUTH_ZITADEL_ISSUER=http://localhost:8080 AUTH_ZITADEL_CLIENT_ID=your-client-id AUTH_ZITADEL_CLIENT_SECRET=your-client-secret # Auth.js secret (generate with: openssl rand -base64 32) AUTH_SECRET=your-auth-secret # Backend API URL PUBLIC_API_URL=http://localhost:3001 # Zitadel account management URL (for password/MFA changes) PUBLIC_ZITADEL_ACCOUNT_URL=http://localhost:8080/ui/console # Zitadel service user PAT (for Session API v2 calls from server-side) ZITADEL_SERVICE_USER_TOKEN=your-service-user-token # App URL (for OIDC redirects) ORIGIN=http://localhost:5173