- JWT auth with bcrypt password hashing, cookie sessions, forgot/reset password - Per-user encrypted credential storage (Redis + AES-256-GCM) for all 9 platforms - Usage tracking with monthly limits per plan (free/starter/growth/enterprise) - Invoice generation and retrieval (admin + user views) - Admin panel with customer listing (role-based access) - Web app UI at app.squaremcp.com — login, dashboard, connections, usage, invoices - Unified auth middleware: API key, OAuth Bearer, and JWT cookie support - Facebook Graph API fixes: published_posts endpoint, photo/video post support - TikTok sandbox compliance: SELF_ONLY privacy for unaudited apps - URL verification files for TikTok app review
123 lines
2.9 KiB
YAML
123 lines
2.9 KiB
YAML
apiVersion: apps/v1
|
|
kind: Deployment
|
|
metadata:
|
|
name: squaremcp-site
|
|
namespace: fetcherpay
|
|
spec:
|
|
replicas: 1
|
|
selector:
|
|
matchLabels:
|
|
app: squaremcp-site
|
|
template:
|
|
metadata:
|
|
labels:
|
|
app: squaremcp-site
|
|
spec:
|
|
containers:
|
|
- name: squaremcp-site
|
|
image: localhost:32000/squaremcp-site@sha256:395e736f1899ce0f2402e34caa95359e2eb54b5424318cf8139982e66b35a974
|
|
imagePullPolicy: Always
|
|
ports:
|
|
- containerPort: 8080
|
|
readinessProbe:
|
|
httpGet:
|
|
path: /
|
|
port: 8080
|
|
initialDelaySeconds: 3
|
|
periodSeconds: 10
|
|
livenessProbe:
|
|
httpGet:
|
|
path: /
|
|
port: 8080
|
|
initialDelaySeconds: 10
|
|
periodSeconds: 30
|
|
---
|
|
apiVersion: v1
|
|
kind: Service
|
|
metadata:
|
|
name: squaremcp-site
|
|
namespace: fetcherpay
|
|
spec:
|
|
selector:
|
|
app: squaremcp-site
|
|
ports:
|
|
- protocol: TCP
|
|
port: 80
|
|
targetPort: 8080
|
|
---
|
|
apiVersion: networking.k8s.io/v1
|
|
kind: Ingress
|
|
metadata:
|
|
name: squaremcp-site-ingress
|
|
namespace: fetcherpay
|
|
annotations:
|
|
cert-manager.io/cluster-issuer: letsencrypt-prod
|
|
nginx.ingress.kubernetes.io/proxy-buffering: "off"
|
|
spec:
|
|
ingressClassName: nginx
|
|
rules:
|
|
- host: squaremcp.com
|
|
http:
|
|
paths:
|
|
- path: /api/pilot-request
|
|
pathType: Prefix
|
|
backend:
|
|
service:
|
|
name: hermes-mcp
|
|
port:
|
|
number: 3456
|
|
- path: /
|
|
pathType: Prefix
|
|
backend:
|
|
service:
|
|
name: squaremcp-site
|
|
port:
|
|
number: 80
|
|
- host: www.squaremcp.com
|
|
http:
|
|
paths:
|
|
- path: /api/pilot-request
|
|
pathType: Prefix
|
|
backend:
|
|
service:
|
|
name: hermes-mcp
|
|
port:
|
|
number: 3456
|
|
- path: /
|
|
pathType: Prefix
|
|
backend:
|
|
service:
|
|
name: squaremcp-site
|
|
port:
|
|
number: 80
|
|
- host: tiktok.squaremcp.com
|
|
http:
|
|
paths:
|
|
- path: /auth/tiktok
|
|
pathType: Prefix
|
|
backend:
|
|
service:
|
|
name: hermes-mcp
|
|
port:
|
|
number: 3456
|
|
- path: /api/pilot-request
|
|
pathType: Prefix
|
|
backend:
|
|
service:
|
|
name: hermes-mcp
|
|
port:
|
|
number: 3456
|
|
- path: /
|
|
pathType: Prefix
|
|
backend:
|
|
service:
|
|
name: squaremcp-site
|
|
port:
|
|
number: 80
|
|
tls:
|
|
- hosts:
|
|
- squaremcp.com
|
|
- www.squaremcp.com
|
|
- tiktok.squaremcp.com
|
|
secretName: squaremcp-tls
|