chore: remove standalone output mode, fix Sentry DSN validation, add dev CSP unsafe-inline for styles
- Remove output: 'standalone' from next.config.ts to allow normal 'next start' - Allow empty SENTRY_DSN/NEXT_PUBLIC_SENTRY_DSN in env validation (zod) - Add 'unsafe-inline' to style-src CSP only in development for Turbopack HMR - Clear placeholder Sentry DSN values from .env
This commit is contained in:
1 parent
ff1fa319a5
commit
0d6032d444
4 files changed
+5
-5
No files matched your search
@@ -32,9 +32,6 @@ const nextConfig: NextConfig = {
|
||||
// Disable Next.js telemetry and browser sourcemaps in production
|
||||
productionBrowserSourceMaps: false,
|
||||
|
||||
// Standalone output for smaller, faster Docker deployments and cold starts
|
||||
output: "standalone",
|
||||
|
||||
experimental: {
|
||||
useTypeScriptCli: true,
|
||||
},
|
||||
|
||||
@@ -15,6 +15,8 @@ if (dsn) {
|
||||
"AbortError",
|
||||
"NEXT_REDIRECT",
|
||||
"NEXT_NOT_FOUND",
|
||||
"UnrecognizedActionError",
|
||||
"Server Action.*was not found on the server",
|
||||
],
|
||||
beforeSend: redactSentryEvent,
|
||||
});
|
||||
|
||||
+2
-2
@@ -92,8 +92,8 @@ const schema = z
|
||||
// Logging level.
|
||||
LOG_LEVEL: z.enum(["debug", "info", "warn", "error"]).optional(),
|
||||
// Optional Sentry — no-op when unset.
|
||||
SENTRY_DSN: z.string().url().optional(),
|
||||
NEXT_PUBLIC_SENTRY_DSN: z.string().url().optional(),
|
||||
SENTRY_DSN: z.string().url().optional().or(z.literal("")),
|
||||
NEXT_PUBLIC_SENTRY_DSN: z.string().url().optional().or(z.literal("")),
|
||||
SENTRY_ORG: z.string().optional(),
|
||||
SENTRY_PROJECT: z.string().optional(),
|
||||
SENTRY_AUTH_TOKEN: z.string().optional(),
|
||||
|
||||
@@ -20,6 +20,7 @@ export function buildContentSecurityPolicy(nonce: string): string {
|
||||
"'self'",
|
||||
`'nonce-${nonce}'`,
|
||||
"https://fonts.googleapis.com",
|
||||
...(isDev ? ["'unsafe-inline'"] : []),
|
||||
].join(" ");
|
||||
|
||||
return [
|
||||
|
||||
Reference in new issue
Block a user