feat: add automated crons, telemetry cleanup, RTL support, and manual road candidate tools
This commit is contained in:
@@ -108,7 +108,8 @@ export class AuthService {
|
||||
tenant = await this.tenantRepository.save({
|
||||
name,
|
||||
email,
|
||||
isActive: true
|
||||
isActive: true,
|
||||
plan: TenantPlan.ENTERPRISE,
|
||||
});
|
||||
}
|
||||
|
||||
|
||||
@@ -19,9 +19,11 @@ async function bootstrap() {
|
||||
// Apply standard HTTP security headers
|
||||
app.use(helmet());
|
||||
|
||||
// 1. Modern Security Headers & Permissive CORS for Production Dashboard
|
||||
// 1. Strict Security Headers & Restricted CORS
|
||||
app.enableCors({
|
||||
origin: true, // Reflect request origin
|
||||
origin: process.env.ALLOWED_ORIGINS
|
||||
? process.env.ALLOWED_ORIGINS.split(',')
|
||||
: ['http://localhost:3204', 'http://localhost:5173', 'https://map-saas.intaleqapp.com'],
|
||||
methods: 'GET,HEAD,PUT,PATCH,POST,DELETE,OPTIONS',
|
||||
credentials: true,
|
||||
});
|
||||
|
||||
Reference in New Issue
Block a user