* feat: add personal access tokens * feat: replace MCP tokens with OAuth foundation * fix: keep OAuth constants private in auth foundation * fix: clean up mcp oauth branch scope * fix: expose oauth metadata endpoints * fix: trim mcp oauth config to non-default options Drop OIDC scopes, the org-id JWT claim, and the openid-configuration metadata endpoint since the MCP integration is OAuth-only and the org gets resolved server-side. Also remove options that just duplicated better-auth defaults. * fix: drop redundant oauth metadata helpers Remove `session.storeSessionInDatabase: true` since better-auth only enforces it when secondaryStorage is configured. Inline the `getHostedBaseUrlForOAuthMetadata` alias and skip the async `getOAuthServerConfig()` call in the protected-resource metadata handler — the issuer is just `baseURL` without a custom jwt.issuer override. * docs: explain cache headers on mcp metadata response * Use escaped file routes for OAuth metadata * save
27 lines
811 B
JSON
27 lines
811 B
JSON
{
|
|
"entry": [
|
|
// Detect Tanstack Start Routes
|
|
"cli-auth.ts",
|
|
"src/start.ts",
|
|
"src/server.ts",
|
|
"src/router.tsx",
|
|
"src/routes/**/*.ts",
|
|
"src/routes/**/*.tsx",
|
|
// Drizzle config (plugin disabled due to cloudflare:workers import issues)
|
|
"drizzle.config.ts",
|
|
// DB schema — exports consumed via `import * as schema` / drizzle()
|
|
"src/db/index.ts",
|
|
"src/db/app.schema.ts",
|
|
"src/db/better-auth-schema.ts",
|
|
],
|
|
"project": ["**/*.{js,mjs,ts,tsx}", "!src/routeTree.gen.ts", "!web/**"],
|
|
"ignore": ["drizzle-prod.config.ts"],
|
|
// Disable Drizzle plugin - it tries to load drizzle.config.ts which imports cloudflare:workers
|
|
"drizzle": false,
|
|
"ignoreDependencies": [
|
|
// Tailwindcss used via @tailwindcss/vite plugin
|
|
"tailwindcss",
|
|
"daisyui",
|
|
],
|
|
}
|