api-v2/lib/api_web/endpoint.ex
2025-04-16 10:03:13 -03:00

58 lines
1.7 KiB
Elixir

defmodule ApiWeb.Endpoint do
use Phoenix.Endpoint, otp_app: :api
# The session will be stored in the cookie and signed,
# this means its contents can be read but not tampered with.
# Set :encryption_salt if you would also like to encrypt it.
@session_options [
store: :cookie,
key: "_api_key",
signing_salt: "NOHDM93g",
same_site: "Lax"
]
# socket "/live", Phoenix.LiveView.Socket, websocket: [connect_info: [session: @session_options]]
socket "/api/live", Phoenix.LiveView.Socket, websocket: [connect_info: [session: @session_options]]
# Serve at "/" the static files from "priv/static" directory.
#
# You should set gzip to true if you are running phx.digest
# when deploying your static files in production.
plug Plug.Static,
at: "/api",
from: :api,
gzip: false,
only: ApiWeb.static_paths()
# Code reloading can be explicitly enabled under the
# :code_reloader configuration of your endpoint.
if code_reloading? do
socket "/api/phoenix/live_reload/socket", Phoenix.LiveReloader.Socket
plug Phoenix.LiveReloader
plug Phoenix.CodeReloader
plug Phoenix.Ecto.CheckRepoStatus, otp_app: :api
end
plug Phoenix.LiveDashboard.RequestLogger,
param_key: "request_logger",
cookie_key: "request_logger"
plug Plug.RequestId
plug Plug.Telemetry, event_prefix: [:phoenix, :endpoint]
plug Plug.Parsers,
parsers: [:urlencoded, :multipart, :json],
pass: ["*/*"],
json_decoder: Phoenix.json_library()
plug Corsica,
origins: "*",
allow_credentials: true,
allow_headers: ~w(Content-Type Authorization),
allow_methods: ~w(GET POST OPTIONS)
plug Plug.MethodOverride
plug Plug.Head
plug Plug.Session, @session_options
plug ApiWeb.Router
end