LoVisual/backend/accounts-service
loki5512344 b496bde701
feat(backend): serve avatars through accounts-service behind the gateway
accounts-service returned avatar_url built from the internal S3_ENDPOINT
(http://minio:9000/<bucket>), which browsers cannot resolve, so avatars never
rendered and the re-crop fetch failed. MinIO is intentionally not exposed.

Add a public GET /media/{key} read route in accounts-service (behind the
gateway internal-key guard, no identity required so anonymous profile pages
work) that streams the object out of private MinIO. Introduce
AVATAR_PUBLIC_BASE_URL so the browser-facing prefix is decoupled from the
internal endpoint; prod sets it to the same-origin /api/media, gateway routes
the media segment to accounts.
2026-09-29 10:14:18 +02:00
..
migrations chore(history): squash 67 commit(s) from 2026-09-25 2026-09-25 20:22:13 +02:00
src feat(backend): serve avatars through accounts-service behind the gateway 2026-09-29 10:14:18 +02:00
tests chore(history): squash 67 commit(s) from 2026-09-25 2026-09-25 20:22:13 +02:00
.gitignore chore(history): squash 59 commit(s) from 2026-09-23 2026-09-23 22:38:08 +02:00
Cargo.toml chore(history): squash 67 commit(s) from 2026-09-25 2026-09-25 20:22:13 +02:00
Dockerfile fix(deploy): pin backend Dockerfiles' builder/runtime base to the same Debian release 2026-09-28 15:32:30 +02:00