# ---------------------------------------------------------------------------
# Production configuration.
#
# Every REPLACE_ value below has to be filled in on the server. They are named
# rather than left blank on purpose: a blank database password is a plausible
# setting that fails quietly, while REPLACE_db_password cannot be mistaken for
# a real one. DEPLOY.md lists them in order.
# ---------------------------------------------------------------------------

APP_NAME="EduSwift Academy"
APP_ENV=production
APP_KEY=base64:VgS+WGHwSHlkgg5ydMuEGR0FhLWZ1uN6IjIe6RkM2lI=
APP_DEBUG=false
APP_URL=https://REPLACE-WITH-YOUR-DOMAIN

APP_LOCALE=en
APP_FALLBACK_LOCALE=en
APP_FAKER_LOCALE=en_NG
APP_TIMEZONE=Africa/Lagos

APP_MAINTENANCE_DRIVER=file

BCRYPT_ROUNDS=12

# Shared hosting sits behind a proxy, so without this Laravel sees the proxy's
# address instead of the visitor's and builds http:// URLs on an https:// site.
TRUSTED_PROXIES=*

# error, not debug: a production log at debug level fills a shared-hosting disk
# quota and buries the entries that matter.
LOG_CHANNEL=stack
LOG_STACK=single
LOG_DEPRECATIONS_CHANNEL=null
LOG_LEVEL=error

DB_CONNECTION=mysql
DB_HOST=127.0.0.1
DB_PORT=3306
DB_DATABASE=REPLACE_cpanel_database_name
DB_USERNAME=REPLACE_cpanel_database_user
DB_PASSWORD=REPLACE_database_password

SESSION_DRIVER=database
SESSION_LIFETIME=120
SESSION_ENCRYPT=false
SESSION_PATH=/
SESSION_DOMAIN=null
SESSION_COOKIE=school_session
# The .htaccess forces HTTPS, so the cookie can insist on it too.
SESSION_SECURE_COOKIE=true
SESSION_SAME_SITE=lax

BROADCAST_CONNECTION=log
FILESYSTEM_DISK=public
QUEUE_CONNECTION=database
CACHE_STORE=database

# ---------------------------------------------------------------------------
# Mail.
#
# These are fallbacks. The school's own settings live in the admin panel under
# Settings > Email config and override everything here at runtime.
#
# MAIL_FORCE_LOG is deliberately absent. It is the development switch that made
# every message vanish into the log while the screen reported "sent", and it
# has no business in a production file even set to false.
# ---------------------------------------------------------------------------
MAIL_MAILER=smtp
MAIL_SCHEME=smtps
MAIL_HOST=mail.eduswift.net
MAIL_PORT=465
MAIL_USERNAME=info@eduswift.net
MAIL_PASSWORD=REPLACE_mailbox_password
MAIL_FROM_ADDRESS=info@eduswift.net
MAIL_FROM_NAME="${APP_NAME}"

# Optional. Leave blank to keep the reCAPTCHA check off on public forms.
RECAPTCHA_SITE_KEY=
RECAPTCHA_SECRET_KEY=

VITE_APP_NAME="${APP_NAME}"
