Closed
Conversation
added 2 commits
February 27, 2026 16:54
- server.js: Inject window.__ARCHON_CONFIG__ with apiKey into index.html - App.tsx: Read apiKey from config and pass to gatekeeper.connect() - sample.env: Add ARCHON_ADMIN_API_KEY placeholder Fixes 401 on /api/v1/dids/export when admin key protection is enabled.
Add allowedHosts to both server and preview configs to allow wallet.archon.technology domain.
Contributor
There was a problem hiding this comment.
Pull request overview
This PR attempts to fix Explorer’s 401 on the restricted POST /api/v1/dids/export endpoint by introducing an “admin API key” configuration that is injected into the Explorer’s index.html at runtime and then passed into the Gatekeeper client connection. It also tightens Vite host allow-listing for the React wallet app.
Changes:
- Add runtime
window.__ARCHON_CONFIG__config support in the Explorer UI and pass anapiKeyinto the Gatekeeper client connect call. - Modify the Explorer Express server to inject
ARCHON_ADMIN_API_KEYintoindex.htmland serve a custom SPA index. - Add
ARCHON_ADMIN_API_KEYto Explorersample.envand addallowedHoststo React wallet Vite config.
Reviewed changes
Copilot reviewed 4 out of 4 changed files in this pull request and generated 4 comments.
| File | Description |
|---|---|
| services/explorer/src/App.tsx | Reads runtime API key from window.__ARCHON_CONFIG__ and passes it to gatekeeper.connect() |
| services/explorer/server.js | Injects ARCHON_ADMIN_API_KEY into HTML at runtime and changes SPA index serving behavior |
| services/explorer/sample.env | Documents ARCHON_ADMIN_API_KEY env var for Explorer server |
| apps/react-wallet/vite.config.ts | Adds allowedHosts to Vite server and preview |
💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.
Collaborator
|
Thanks, but there is a much easier fix #139 |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
fixes: #137