Configure Mealie as a public PKCE client in Authentik. Mealie's OIDC flow runs client-side (Vue.js SPA) so it uses PKCE instead of a client_secret. No 1Password secret or ExternalSecret needed. - Add mealie.yaml blueprint to Authentik configmap (public client, admins group) - Add OIDC env vars to Mealie deployment - Update service docs Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| infrastructure | ||
| kubernetes | ||
| operations | ||
| services | ||
| storage | ||
| tools | ||