cacad5cc94
b2 of the multi-provider email roadmap. Mirrors the Gmail provider's shape end-to-end so the two stay structurally interchangeable: - MicrosoftGraphConnection model + table (reconciler pattern, SQLite+MySQL, same shape as GmailConnection: encrypted refresh/access token, sync state). - MicrosoftGraphOAuthService: auth-code + offline-access flow against login.microsoftonline.com, encrypted token storage via IDataProtector, message search/thread/detail fetch against Microsoft Graph (conversationId stands in for Gmail's threadId), attachment listing. - MicrosoftGraphProvider implements IEmailProvider — no contract changes; the existing seam was already provider-neutral. - MicrosoftGraphController: connect-url/oauth/callback/status/disconnect, mirrors GmailController's OAuth surface exactly (including the popup postMessage handshake). Job-matching/review endpoints stay Gmail-only for now, per the roadmap — generalising those needs the frontend provider picker work, not this slice. - Registered in DI + IEmailProviderRegistry (multi-registration of IEmailProvider, resolved by ProviderKey). - Config: Microsoft:ClientId/ClientSecret/TenantId/RedirectUri, wired through docker-compose.yml + .env.example alongside the existing Google:Gmail* keys. - Tests: MicrosoftGraphControllerTests (OAuth lifecycle) + MicrosoftGraphProviderTests (DTO mapping onto the neutral contract). 147/147 green (135 existing + 12 new). Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
53 lines
2.0 KiB
Bash
53 lines
2.0 KiB
Bash
# Copy this file to `.env` (same folder as docker-compose.yml) and fill in values.
|
|
#
|
|
# Used by docker-compose.yml
|
|
AUTH_JWT_KEY=CHANGE_ME_LONG_RANDOM_SECRET
|
|
AUTH_ADMIN_EMAIL=admin@example.com
|
|
AUTH_ADMIN_PASSWORD=CHANGE_ME_STRONG_PASSWORD
|
|
AUTH_GOOGLE_CLIENT_ID=CHANGE_ME_GOOGLE_CLIENT_ID
|
|
GOOGLE_GMAIL_CLIENT_SECRET=CHANGE_ME_GOOGLE_OAUTH_CLIENT_SECRET
|
|
# Optional. If omitted, the backend uses https://<your-domain>/api/gmail/oauth/callback
|
|
GOOGLE_GMAIL_REDIRECT_URI=
|
|
MICROSOFT_CLIENT_ID=CHANGE_ME_MICROSOFT_CLIENT_ID
|
|
MICROSOFT_CLIENT_SECRET=CHANGE_ME_MICROSOFT_OAUTH_CLIENT_SECRET
|
|
# Optional. Defaults to "common" (personal + work/school accounts).
|
|
MICROSOFT_TENANT_ID=
|
|
# Optional. If omitted, the backend uses https://<your-domain>/api/microsoft-graph/oauth/callback
|
|
MICROSOFT_REDIRECT_URI=
|
|
AI_SERVICE_BASE_URL=http://ai-service:8001
|
|
# Optional: enables hybrid CV block classification in the local AI service.
|
|
OLLAMA_BASE_URL=http://ollama:11434
|
|
OLLAMA_MODEL=qwen2.5:7b
|
|
|
|
# AI provider for the heavy /cv/* calls: ollama (default, local) | gemini | groq.
|
|
# /summarize always stays local (distilbart). To offload a weak production GPU,
|
|
# set AI_PROVIDER=gemini (or groq) and provide the matching key below.
|
|
# Keys are read from the environment only — never commit real keys.
|
|
AI_PROVIDER=ollama
|
|
GEMINI_API_KEY=
|
|
GEMINI_MODEL=gemini-2.0-flash
|
|
GROQ_API_KEY=
|
|
GROQ_MODEL=llama-3.3-70b-versatile
|
|
|
|
# Optional: only needed if you want the UI to call a non-default API base URL.
|
|
# In production the UI defaults to `/api`.
|
|
REACT_APP_API_BASE_URL=
|
|
|
|
# Used by docker-compose.yml (email / password resets / notifications)
|
|
APP_PUBLIC_BASE_URL=https://jobs.cesnimda.uk
|
|
APP_VERSION=
|
|
APP_COMMIT_SHA=
|
|
APP_BUILD_STAMP=
|
|
EMAIL_ENABLED=false
|
|
EMAIL_SMTP_HOST=smtp.gmail.com
|
|
EMAIL_SMTP_PORT=587
|
|
EMAIL_SMTP_USER=CHANGE_ME_GMAIL_ADDRESS
|
|
EMAIL_SMTP_PASSWORD=CHANGE_ME_GOOGLE_APP_PASSWORD
|
|
EMAIL_FROM=CHANGE_ME_GMAIL_ADDRESS
|
|
EMAIL_FROM_NAME=Jobbjakt
|
|
EMAIL_FOLLOWUPREMINDERS_ENABLED=true
|
|
EMAIL_FOLLOWUPREMINDERS_UPCOMINGDAYS=2
|
|
|
|
EMAIL_SMTP_ENABLE_SSL=true
|
|
EMAIL_SMTP_TIMEOUT_MS=15000
|