# Server PORT=3000 HOST=0.0.0.0 NODE_ENV=development # Database DATABASE_URL=postgresql://samreshu:samreshu_dev@localhost:5432/samreshu # Redis REDIS_URL=redis://localhost:6379 # Auth JWT_SECRET=dev-secret-change-in-production-min-32-chars JWT_ACCESS_TTL=15m JWT_REFRESH_TTL=7d # LLM LLM_BASE_URL=http://localhost:11434/v1 LLM_MODEL=qwen2.5:14b LLM_API_KEY= LLM_TIMEOUT_MS=15000 LLM_MAX_RETRIES=1 LLM_TEMPERATURE=0.7 LLM_MAX_TOKENS=2048 # Rate limits (login uses progressive lockout: 5/10/20 failed attempts -> 15m/1h/24h block) RATE_LIMIT_REGISTER=3 RATE_LIMIT_FORGOT_PASSWORD=3 RATE_LIMIT_VERIFY_EMAIL=5 RATE_LIMIT_API_AUTHED=100 RATE_LIMIT_API_GUEST=30 # CORS (comma-separated origins) CORS_ORIGINS=http://localhost:5173,http://localhost:3000 # Email (dev — mailpit / mailtrap) SMTP_HOST=localhost SMTP_PORT=1025 SMTP_USER= SMTP_PASS= EMAIL_FROM=noreply@samreshu.dev # Sentry (optional for dev) SENTRY_DSN=