- L1 never handles credentials - redirects to L2 for login/register - L2 sets shared cookie (domain=.rose-ash.com) for cross-subdomain auth - Display logged-in user as @user@server (ActivityPub format) - Remove login/register form handling from L1 - Add L1_PUBLIC_URL env var for redirect callbacks - Rename /ui/cache-list to /ui/media-list - Update nav links to use clean URLs Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
140 KiB
140 KiB