Property Management Network — Next.js 16 (App Router), Better Auth, Drizzle ORM over PostgreSQL, Stripe, OpenAI, Resend. Includes: - Security hardening: access-control/IDOR fixes, TLS-by-default DB layer, constant-time cron auth, strict security headers, atomic AI quota gating, HTML/email output encoding, demo-backdoor disabled in production. - Superadmin dashboard at /admin (overview/MRR, server-paginated users with ban/impersonate/plan/delete, billing, platform activity + admin audit log, AI usage, system health) via the Better Auth admin plugin. - Seed/migration utility scripts under scripts/. Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
36 lines
536 B
Plaintext
36 lines
536 B
Plaintext
# Dependencies & build output (reinstalled / rebuilt inside the image)
|
|
node_modules
|
|
.next
|
|
out
|
|
build
|
|
coverage
|
|
|
|
# Secrets — never bake env files into the image
|
|
.env
|
|
.env.*
|
|
|
|
# Local file storage (uploads live on a mounted volume, not in the image)
|
|
storage
|
|
|
|
# Version control & tooling
|
|
.git
|
|
.gitignore
|
|
.gitattributes
|
|
.vercel
|
|
*.tsbuildinfo
|
|
|
|
# Editor / OS noise
|
|
.DS_Store
|
|
.vscode
|
|
.idea
|
|
|
|
# Docs not needed at runtime
|
|
DOCS
|
|
README.md
|
|
COOLIFY.md
|
|
|
|
# Don't copy the Docker context files into the image
|
|
Dockerfile
|
|
.dockerignore
|
|
docker-compose.yml
|