Skip to content

Add default-enabled reCAPTCHA switches to application charts - #221

Open
addshore wants to merge 1 commit into
mainfrom
feat/recaptcha-opt-out
Open

addshore wants to merge 1 commit into
mainfrom
feat/recaptcha-opt-out

Conversation

@addshore

Copy link
Copy Markdown
Collaborator

Wire the application-level reCAPTCHA opt-outs into Kubernetes so local development can run without external CAPTCHA credentials. The applications retain enabled defaults;
these chart settings provide an explicit way to disable them and omit references to CAPTCHA secrets that need not exist locally.

Expose app.recaptcha.enabled for the API,
ui.recaptchaEnabled for the UI,
and mw.recaptcha.enabled for MediaWiki,
all defaulting to true.
Pass the corresponding RECAPTCHA_ENABLED or MW_RECAPTCHA_ENABLED environment variable and conditionally omit reCAPTCHA keys and secret references.

The opt-out requires images containing the corresponding application support:

API: wbstack/api#1278
Bypass validation only when explicitly disabled and APP_ENV=local.

UI: wbstack/ui#1222
Skip requesting a reCAPTCHA token when disabled; configure the API opt-out separately.

MediaWiki: wbstack/mediawiki#564 Honor MW_RECAPTCHA_ENABLED=no while preserving per-wiki QuestyCaptcha settings.

This change does not update application image tags or disable reCAPTCHA by default.

Wire the application-level reCAPTCHA opt-outs into Kubernetes
so local development can run without external CAPTCHA credentials.
The applications retain enabled defaults;
these chart settings provide an explicit way to disable them
and omit references to CAPTCHA secrets that need not exist locally.

Expose app.recaptcha.enabled for the API,
ui.recaptchaEnabled for the UI,
and mw.recaptcha.enabled for MediaWiki,
all defaulting to true.
Pass the corresponding RECAPTCHA_ENABLED or MW_RECAPTCHA_ENABLED
environment variable and conditionally omit reCAPTCHA keys and secret references.

The opt-out requires images containing the corresponding application support:

API: wbstack/api#1278
Bypass validation only when explicitly disabled and APP_ENV=local.

UI: wbstack/ui#1222
Skip requesting a reCAPTCHA token when disabled; configure the API opt-out separately.

MediaWiki: wbstack/mediawiki#564
Honor MW_RECAPTCHA_ENABLED=no while preserving per-wiki QuestyCaptcha settings.

This change does not update application image tags or disable reCAPTCHA by default.

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant