Server Configuration
Configure the Next.js host boundary for all conforming Unified clients.
Configure the database and Better Auth URL/secret first, followed by the active client's trusted Origin and Apple/Google audiences. Add explicit RevenueCat mappings and webhook authorization, R2 storage, and APNs/FCM provider credentials only for shipped capabilities.
These are host-only values. Client bundles receive the API base URL, request Origin, publishable mobile SDK keys, and platform identifiers—never database, webhook, object-storage, or push-provider secrets.
Missing core settings must fail explicitly. See Platform Authentication and API Contract.
