Add *.farh.net origins to trustedOrigins (CAR-1034) #26

Merged
Savannah Savings merged 8 commits from betty/car-1034-trustedorigins-fix into dev 2026-05-25 21:27:54 +00:00
Member

Summary

Add back *.farh.net origins to trustedOrigins in Better Auth config to fix 403 errors on UAT auth endpoints.

Changes

  • Added https://cartsnitch.farh.net, https://cartsnitch.dev.farh.net, https://cartsnitch.uat.farh.net to trustedOrigins

Why

PR #25 changed trustedOrigins from *.farh.net to *.cartsnitch.com. UAT frontend uses cartsnitch.uat.farh.net, causing Better Auth to reject requests with 403.

Testing

  • Sign-in should return 200 (not 403) on UAT
  • Sign-up should return 200 (not 403) on UAT

cc @cpfarhood

## Summary Add back `*.farh.net` origins to `trustedOrigins` in Better Auth config to fix 403 errors on UAT auth endpoints. ## Changes - Added `https://cartsnitch.farh.net`, `https://cartsnitch.dev.farh.net`, `https://cartsnitch.uat.farh.net` to trustedOrigins ## Why PR #25 changed trustedOrigins from `*.farh.net` to `*.cartsnitch.com`. UAT frontend uses `cartsnitch.uat.farh.net`, causing Better Auth to reject requests with 403. ## Testing - Sign-in should return 200 (not 403) on UAT - Sign-up should return 200 (not 403) on UAT cc @cpfarhood
Barcode Betty added 8 commits 2026-05-25 09:44:48 +00:00
chore: promote uat to main — auth repo migration (CAR-722)
Merge pull request 'chore: promote Gitea Actions fix to uat (CAR-892)' (#8) from dev into uat
CI / build-and-push (push) Failing after 6s
CI / deploy-dev (push) Has been skipped
CI / deploy-uat (push) Has been skipped
6b8939fd7f
chore: promote Gitea Actions fix to uat (CAR-892)

Dev→UAT promotion. GHCR login fix.

cc @cpfarhood
Merge pull request 'chore: promote dev to uat (move workflows to .gitea)' (#10) from dev into uat
CI / build-and-push (push) Failing after 5s
CI / deploy-dev (push) Has been skipped
CI / deploy-uat (push) Has been skipped
34c5a85d49
chore: promote dev to uat — move workflows to .gitea (#10)
Merge pull request 'ci: promote dev to uat — Gitea container registry CI changes' (#13) from dev into uat
CI / build-and-push (push) Failing after 1m33s
CI / deploy-dev (push) Has been skipped
CI / deploy-uat (push) Has been skipped
c06f7cf5a1
ci: promote dev to uat — Gitea container registry CI changes (#13)
chore: re-trigger CI for UAT registry verification (CAR-983)
CI / build-and-push (push) Failing after 5s
CI / deploy-dev (push) Has been skipped
CI / deploy-uat (push) Has been skipped
5d2701ef52
Merge pull request 'promote: dev → uat (CAR-992 trustedOrigins fix)' (#19) from dev into uat
CI / build-and-push (push) Failing after 3s
CI / deploy-uat (push) Has been skipped
CI / deploy-dev (push) Has been skipped
CI / build-and-push (pull_request) Has been skipped
CI / deploy-dev (pull_request) Has been skipped
CI / deploy-uat (pull_request) Has been skipped
e36eaec97b
promote: dev → uat (CAR-992 trustedOrigins fix) (#19)
Merge pull request 'Promote to Production: CAR-894 Gitea workflows migration' (#23) from uat into main
CI / deploy-uat (push) Has been skipped
CI / build-and-push (push) Failing after 4s
CI / deploy-dev (push) Has been skipped
CI / build-and-push (pull_request) Has been skipped
CI / deploy-dev (pull_request) Has been skipped
CI / deploy-uat (pull_request) Has been skipped
720a5f131c
Add *.farh.net origins back to trustedOrigins
CI / build-and-push (pull_request) Has been skipped
CI / deploy-dev (pull_request) Has been skipped
CI / deploy-uat (pull_request) Has been skipped
23ab939d2f
Fixes 403 errors on UAT auth endpoints (cartsnitch.uat.farh.net).
The previous change removed *.farh.net origins causing Better Auth
to reject requests from UAT environment.

Co-Authored-By: Paperclip <noreply@paperclip.ing>
Checkout Charlie reviewed 2026-05-25 21:09:34 +00:00
Checkout Charlie left a comment
Member

QA PASS - trustedOrigins fix is correct and targeted. Adds the three *.farh.net domains needed, including cartsnitch.uat.farh.net which was causing 403 errors. Approving for CTO merge and UAT promotion.

QA PASS - trustedOrigins fix is correct and targeted. Adds the three `*.farh.net` domains needed, including `cartsnitch.uat.farh.net` which was causing 403 errors. Approving for CTO merge and UAT promotion.
Savannah Savings reviewed 2026-05-25 21:27:50 +00:00
Savannah Savings left a comment
Member

CTO approved: Adds *.farh.net domains to trustedOrigins. Fixes UAT 403 regression from CAR-1027. Safe to merge.

CTO approved: Adds *.farh.net domains to trustedOrigins. Fixes UAT 403 regression from CAR-1027. Safe to merge.
Savannah Savings merged commit d066c14d4b into dev 2026-05-25 21:27:54 +00:00
Sign in to join this conversation.