Catalog (142)

IDDocumentUpdatedAnchorsSHA
agents/ag2-extraction-notesAG2 Extraction Notes
agents/ag2-extraction-notes.md
10/20/2018, 1:46:40 AM11e8d0072ebec1
asset-provenanceAsset Provenance
asset-provenance.md
10/20/2018, 1:46:40 AM41025c0acc117
closeout-notesAI-RSI one-click closeout notes
closeout-notes.md
10/20/2018, 1:46:40 AM21f560f6a8535
content-credibility-engineContent Credibility Engine
content-credibility-engine.md
10/20/2018, 1:46:40 AM8d9aa32358670
demo-scriptProduct Walkthrough — Shot List & Script (60–90s)
demo-script.md
10/20/2018, 1:46:40 AM2299b901ec583
deploymentDeployment — Vercel + Render
deployment.md
10/20/2018, 1:46:40 AM8822e08a991b9
development-roadmapMeta Museum Development Roadmap
development-roadmap.md
10/20/2018, 1:46:40 AM23624a8a089d72
development/aidd-tddAIDD + TDD Discipline
development/aidd-tdd.md
10/20/2018, 1:46:40 AM5cd0a0524525a
development/typescript-command-contractTypeScript Command Contract
development/typescript-command-contract.md
10/20/2018, 1:46:40 AM0e2c0fe337ff6
envEnvironment Variables
env.md
10/20/2018, 1:46:40 AM13d45d28b1acb7
evals/golden-museum-questionsGolden Eval Dataset: Complex Museum Questions
evals/golden-museum-questions.md
10/20/2018, 1:46:40 AM62876a2b5e78d
knowledge/concepts/llm-wiki-patternDefinition
knowledge/concepts/llm-wiki-pattern.md
10/20/2018, 1:46:40 AM01538a0b7d895
knowledge/concepts/meta-museum-knowledge-systemDefinition
knowledge/concepts/meta-museum-knowledge-system.md
10/20/2018, 1:46:40 AM0fb8615747115
knowledge/concepts/open-knowledge-formatDefinition
knowledge/concepts/open-knowledge-format.md
10/20/2018, 1:46:40 AM037e419de4736
knowledge/indexMeta Museum Knowledge Wiki
knowledge/index.md
10/20/2018, 1:46:40 AM38d2fe66d7442
knowledge/logMeta Museum Knowledge Wiki Log
knowledge/log.md
10/20/2018, 1:46:40 AM19f73157e299f
knowledge/schema/llm-wiki-maintainerPurpose
knowledge/schema/llm-wiki-maintainer.md
10/20/2018, 1:46:40 AM01bc0cde6fa1e
knowledge/sources/llm-wiki-pattern-noteSummary
knowledge/sources/llm-wiki-pattern-note.md
10/20/2018, 1:46:40 AM0db115d8fd7bf
knowledge/sources/open-knowledge-format-google-2026-06-12Summary
knowledge/sources/open-knowledge-format-google-2026-06-12.md
10/20/2018, 1:46:40 AM0a87b065f97db
linked-art/activity-stream-partner-quickstartActivityStreams Partner Quickstart
linked-art/activity-stream-partner-quickstart.md
10/20/2018, 1:46:40 AM96ea3aea16866
linked-art/activity-stream-profileMetaMuseum Linked Art Activity Stream Profile
linked-art/activity-stream-profile.md
10/20/2018, 1:46:40 AM6adb634532df8
linked-art/api/abstract-worksLinked Art API: Abstract Works
linked-art/api/abstract-works.md
7/6/2026, 12:00:00 AM7271315c08d2d
linked-art/api/bibliographyLinked Art: Bibliography
linked-art/api/bibliography.md
7/6/2026, 12:00:00 AM126d9d5160565a
linked-art/api/cdwa-mappingLinked Art: CDWA Mapping
linked-art/api/cdwa-mapping.md
7/6/2026, 12:00:00 AM9baaefda0cff6
linked-art/api/code-and-toolsLinked Art: Code And Tools
linked-art/api/code-and-tools.md
7/6/2026, 12:00:00 AM87d87b00c2f04
linked-art/api/conceptsLinked Art API: Concepts
linked-art/api/concepts.md
7/6/2026, 12:00:00 AM75c3b10a975bb
linked-art/api/design-principlesLinked Art API: Design Principles
linked-art/api/design-principles.md
7/6/2026, 12:00:00 AM103ff80e8696b0
linked-art/api/digital-objectsLinked Art API: Digital Objects
linked-art/api/digital-objects.md
7/6/2026, 12:00:00 AM889a21989333a
linked-art/api/discoveryLinked Art API: Discovery
linked-art/api/discovery.md
7/7/2026, 12:00:00 AM5407a0f6a9de4
linked-art/api/eventsLinked Art API: Events
linked-art/api/events.md
7/6/2026, 12:00:00 AM8cdb00a835694
linked-art/api/groupsLinked Art API: Groups
linked-art/api/groups.md
7/6/2026, 12:00:00 AM7abbb3e00ba19
linked-art/api/halLinked Art API: HAL
linked-art/api/hal.md
7/6/2026, 12:00:00 AM264c645e4c2ea6
linked-art/api/indexLinked Art API Reference Notes
linked-art/api/index.md
7/6/2026, 12:00:00 AM404ab73322251
linked-art/api/json-ld-considerationsLinked Art API: JSON-LD Considerations
linked-art/api/json-ld-considerations.md
7/6/2026, 12:00:00 AM7dc542f437a12
linked-art/api/json-schemasLinked Art API: JSON Schemas
linked-art/api/json-schemas.md
7/6/2026, 12:00:00 AM1657ed7e27b78b
linked-art/api/peopleLinked Art API: People
linked-art/api/people.md
7/6/2026, 12:00:00 AM700141f499e00
linked-art/api/physical-objectsLinked Art API: Physical Objects
linked-art/api/physical-objects.md
7/6/2026, 12:00:00 AM10b947ded689e6
linked-art/api/placesLinked Art API: Places
linked-art/api/places.md
7/6/2026, 12:00:00 AM75b00bba40010
linked-art/api/protocolLinked Art API: Protocol
linked-art/api/protocol.md
7/6/2026, 12:00:00 AM8d7f6c925ba69
linked-art/api/provenance-activitiesLinked Art API: Provenance Activities
linked-art/api/provenance-activities.md
7/6/2026, 12:00:00 AM18565a129b4074
linked-art/api/schema-abstract-workLinked Art API Schema: Abstract Work
linked-art/api/schema-abstract-work.md
7/6/2026, 12:00:00 AM720660a51677e
linked-art/api/schema-conceptLinked Art API Schema: Concept
linked-art/api/schema-concept.md
7/6/2026, 12:00:00 AM76a568b387d80
linked-art/api/schema-digital-objectLinked Art API Schema: Digital Object
linked-art/api/schema-digital-object.md
7/6/2026, 12:00:00 AM7750a7f2de6a7
linked-art/api/schema-eventLinked Art API Schema: Event
linked-art/api/schema-event.md
7/6/2026, 12:00:00 AM7ecc0b93c1ea6
linked-art/api/schema-groupLinked Art API Schema: Group
linked-art/api/schema-group.md
7/6/2026, 12:00:00 AM833ee6eb1355f
linked-art/api/schema-org-mappingLinked Art: Schema.org Mapping
linked-art/api/schema-org-mapping.md
7/6/2026, 12:00:00 AM10e5407dc8677d
linked-art/api/schema-personLinked Art API Schema: Person
linked-art/api/schema-person.md
7/6/2026, 12:00:00 AM87c1f64043517
linked-art/api/schema-physical-objectLinked Art API Schema: Human-Made Object
linked-art/api/schema-physical-object.md
7/6/2026, 12:00:00 AM9d0ab12e93755
linked-art/api/schema-placeLinked Art API Schema: Place
linked-art/api/schema-place.md
7/6/2026, 12:00:00 AM8f3340073270b
linked-art/api/schema-provenance-activityLinked Art API Schema: Provenance Activity
linked-art/api/schema-provenance-activity.md
7/6/2026, 12:00:00 AM8dd2fe5345a6a
linked-art/api/schema-setLinked Art API Schema: Set
linked-art/api/schema-set.md
7/6/2026, 12:00:00 AM82b48dd1a0cb1
linked-art/api/schema-textual-workLinked Art API Schema: Textual Work
linked-art/api/schema-textual-work.md
7/6/2026, 12:00:00 AM827f38ce348c4
linked-art/api/schema-visual-workLinked Art API Schema: Visual Work
linked-art/api/schema-visual-work.md
7/6/2026, 12:00:00 AM97dc44dd62a63
linked-art/api/searchLinked Art API: Search
linked-art/api/search.md
7/7/2026, 12:00:00 AM6fe2301e3ac01
linked-art/api/setsLinked Art API: Sets
linked-art/api/sets.md
7/6/2026, 12:00:00 AM717aaf803945c
linked-art/api/shared-activitiesLinked Art API: Shared Activities
linked-art/api/shared-activities.md
7/6/2026, 12:00:00 AM7de394280c803
linked-art/api/shared-concept-referencesLinked Art API: Shared Concept References
linked-art/api/shared-concept-references.md
7/6/2026, 12:00:00 AM8d1d6465ac086
linked-art/api/shared-digital-linksLinked Art API: Shared Digital Links
linked-art/api/shared-digital-links.md
7/6/2026, 12:00:00 AM6aa747ae005bf
linked-art/api/shared-dimensionsLinked Art API: Shared Dimensions
linked-art/api/shared-dimensions.md
7/6/2026, 12:00:00 AM7a6a512ce1f69
linked-art/api/shared-identifiersLinked Art API: Shared Identifiers
linked-art/api/shared-identifiers.md
7/6/2026, 12:00:00 AM70e518b8d88c5
linked-art/api/shared-monetary-amountsLinked Art API: Shared Monetary Amounts
linked-art/api/shared-monetary-amounts.md
7/6/2026, 12:00:00 AM7030dc129f2ca
linked-art/api/shared-namesLinked Art API: Shared Names
linked-art/api/shared-names.md
7/6/2026, 12:00:00 AM73da4d8a4c849
linked-art/api/shared-referencesLinked Art API: Shared References
linked-art/api/shared-references.md
7/6/2026, 12:00:00 AM822aa1cc20d4f
linked-art/api/shared-relationshipsLinked Art API: Shared Relationships
linked-art/api/shared-relationships.md
7/6/2026, 12:00:00 AM7af011a27832c
linked-art/api/shared-rightsLinked Art API: Shared Rights
linked-art/api/shared-rights.md
7/6/2026, 12:00:00 AM79975708ccd02
linked-art/api/shared-statementsLinked Art API: Shared Statements
linked-art/api/shared-statements.md
7/6/2026, 12:00:00 AM7f26889987779
linked-art/api/shared-structuresLinked Art API: Shared Structures
linked-art/api/shared-structures.md
7/6/2026, 12:00:00 AM69f6a99f012ad
linked-art/api/shared-timespansLinked Art API: Shared TimeSpans
linked-art/api/shared-timespans.md
7/6/2026, 12:00:00 AM7ea33d788e29b
linked-art/api/textual-worksLinked Art API: Textual Works
linked-art/api/textual-works.md
7/6/2026, 12:00:00 AM783115d01844b
linked-art/api/visual-worksLinked Art API: Visual Works
linked-art/api/visual-works.md
7/6/2026, 12:00:00 AM75c7225b0a261
linked-art/canonical-identifier-policyCanonical Identifier Policy
linked-art/canonical-identifier-policy.md
10/20/2018, 1:46:40 AM856bc7bc9ee2f
linked-art/conformance-matrixLinked Art 1.0 — Conformance Matrix
linked-art/conformance-matrix.md
10/20/2018, 1:46:40 AM53666a6671a7a
linked-art/external-activity-streamsExternal Activity Stream Candidates
linked-art/external-activity-streams.md
10/20/2018, 1:46:40 AM3756dbb91f85c
linked-art/Linked%20Art%20NotesLinked Art Notes.md
linked-art/Linked Art Notes.md
10/20/2018, 1:46:40 AM0aca66d51107b
linked-art/Linked%20Open%20Art%20Data%20Web%20App%20-%20Must-have%20Data%20SourcesLinked Open Art Data Web App (AI) — Must-have Data Sources
linked-art/Linked Open Art Data Web App - Must-have Data Sources.md
10/20/2018, 1:46:40 AM77b7d350fe8a0
linked-art/LinkedArtAppFeatures🏛️ Art Explorer: Linked Art Application & Ecosystem
linked-art/LinkedArtAppFeatures.md
10/20/2018, 1:46:40 AM14e23b890ecd2a
linked-art/LinkedArtChallengesLinkedArtChallenges.md
linked-art/LinkedArtChallenges.md
10/20/2018, 1:46:40 AM0d8c987070277
linked-art/LinkedArtCollaborationLinkedArtCollaboration.md
linked-art/LinkedArtCollaboration.md
10/20/2018, 1:46:40 AM114ccf63edef3
linked-art/LinkedArtDashboardLinkedArtDashboard.md
linked-art/LinkedArtDashboard.md
10/20/2018, 1:46:40 AM06d04d4b2bf79
linked-art/LinkedArtFeatureRoadmapFeature Roadmap for Linked Open Art Data Apps
linked-art/LinkedArtFeatureRoadmap.md
10/20/2018, 1:46:40 AM8ac10d8e79c20
linked-art/LinkedArtJobReadyLinkedArtJobReady.md
linked-art/LinkedArtJobReady.md
10/20/2018, 1:46:40 AM0c60b357bcb87
linked-art/LinkedArtModel1.0-ReferenceLinked Art Model 1.0 Reference (Round 1)
linked-art/LinkedArtModel1.0-Reference.md
10/20/2018, 1:46:40 AM344e6d48d474b3e
linked-art/LinkedArtPatternsLinkedArtPatterns.md
linked-art/LinkedArtPatterns.md
10/20/2018, 1:46:40 AM0d45bbbb02d70
linked-art/LinkedArtPRD🖼️ Product Requirements Document
linked-art/LinkedArtPRD.md
10/20/2018, 1:46:40 AM2091bc1f37307c
linked-art/LinkedArtRoadmapLinkedArtRoadmap.md
linked-art/LinkedArtRoadmap.md
10/20/2018, 1:46:40 AM0e52e71c6bd28
linked-art/LinkedArtSaaSLinkedArtSaaS.md
linked-art/LinkedArtSaaS.md
10/20/2018, 1:46:40 AM03d260738fb29
linked-art/LinkedArtSoftwareCode and Tools
linked-art/LinkedArtSoftware.md
10/20/2018, 1:46:40 AM89e8fef24aea9
linked-art/LinkedArtSOTAWebAppLinkedArt SOTA Web App — Master Build Specification
linked-art/LinkedArtSOTAWebApp.md
10/20/2018, 1:46:40 AM129a5f0baca89c6
linked-art/LinkedArtUnmetNeedsLinkedArtUnmetNeeds.md
linked-art/LinkedArtUnmetNeeds.md
10/20/2018, 1:46:40 AM0cb35fac29cc1
linked-art/LinkedArtUseCasesLinkedArtUseCases.md
linked-art/LinkedArtUseCases.md
10/20/2018, 1:46:40 AM05c572ce8e7f3
linked-art/LinkedArtWidgetsLinkedArtWidgets.md
linked-art/LinkedArtWidgets.md
10/20/2018, 1:46:40 AM0b39911c7d97d
linked-art/LinkedDesignLinkedDesign.md
linked-art/LinkedDesign.md
10/20/2018, 1:46:40 AM00a02240471e5
linked-art/LODEngineLODEngine.md
linked-art/LODEngine.md
10/20/2018, 1:46:40 AM0ef73426f80db
linked-art/LODPipelineLODPipeline.md
linked-art/LODPipeline.md
10/20/2018, 1:46:40 AM0fe95e61ed9da
linked-art/LODToolsLODTools.md
linked-art/LODTools.md
10/20/2018, 1:46:40 AM03167947fc4e4
linked-art/metahistorybook-prod-harvest-evidenceMetaHistoryBook Production Consumer Evidence
linked-art/metahistorybook-prod-harvest-evidence.md
10/20/2018, 1:46:40 AM131577a970c8b0
linked-art/metahistorybook-reciprocal-harvest-checklistMetaHistoryBook Reciprocal Harvest Checklist
linked-art/metahistorybook-reciprocal-harvest-checklist.md
10/20/2018, 1:46:40 AM506f00beacbe6
linked-art/partitioningLinked Art Graph Partitioning
linked-art/partitioning.md
10/20/2018, 1:46:40 AM3341aff71f753
linked-art/SPARQLSPARQL.md
linked-art/SPARQL.md
10/20/2018, 1:46:40 AM050e00ed51733
linked-art/VocabulariesVocabularies.md
linked-art/Vocabularies.md
10/20/2018, 1:46:40 AM0e0574a338aaa
linked-art/wikidataexplorer-consumer-evidenceWikidata Explorer ActivityStreams Consumer Evidence
linked-art/wikidataexplorer-consumer-evidence.md
10/20/2018, 1:46:40 AM2d2dee0ad49d3
linked-art/YaleLuxYaleLux.md
linked-art/YaleLux.md
10/20/2018, 1:46:40 AM074fd47fae749
meta-wiki-art-bridgeMeta Wiki Art Bridge (MediaWiki + Wikibase)
meta-wiki-art-bridge.md
10/20/2018, 1:46:40 AM77a43fb0c48b8
ops/activity-adoption-proofActivity Feed Adoption Proof Runbook
ops/activity-adoption-proof.md
10/20/2018, 1:46:40 AM8b3c1d8e3399b
ops/ag2-workerAG2 Worker and Bridge Runbook
ops/ag2-worker.md
10/20/2018, 1:46:40 AM950efcd4e3318
ops/auth-credential-rotationAuth credential rotation runbook
ops/auth-credential-rotation.md
10/20/2018, 1:46:40 AM476e3fc6daefa
ops/deployment-preflightDeployment Preflight Runbook
ops/deployment-preflight.md
10/20/2018, 1:46:40 AM597db694dd88b
ops/era-c-exit-gate-evidenceEra C Exit-Gate Evidence Pack
ops/era-c-exit-gate-evidence.md
10/20/2018, 1:46:40 AM64fdaaa29056a
ops/evidence-script-ownershipEvidence Script Ownership
ops/evidence-script-ownership.md
10/20/2018, 1:46:40 AM48432d0529cf4
ops/external-evidence-request-packExternal Evidence Request Pack
ops/external-evidence-request-pack.md
10/20/2018, 1:46:40 AM64d89c9ef0410
ops/go-live-checklistGo-Live & Evidence-Pipeline Checklist
ops/go-live-checklist.md
10/20/2018, 1:46:40 AM6621cddad10fb
ops/k6-slok6 SLO Load Test (SOTA §20.4)
ops/k6-slo.md
10/20/2018, 1:46:40 AM4328b5b3163d4
ops/kpi-evidenceSOTA §26 KPI Evidence Input
ops/kpi-evidence.md
10/20/2018, 1:46:40 AM7bc46be9b160e
ops/launch-reviewLaunch Review Packet
ops/launch-review.md
10/20/2018, 1:46:40 AM51d414c314ee3
ops/managed-linked-art-pilot-runbookManaged Linked Art Pilot Runbook
ops/managed-linked-art-pilot-runbook.md
10/20/2018, 1:46:40 AM15b2e939be7a87
ops/otel-localLocal OpenTelemetry Wiring (Tempo / Jaeger)
ops/otel-local.md
10/20/2018, 1:46:40 AM51ebbc3b33f92
ops/outbox-projectorTransactional Outbox Projector (Postgres -> Solr/GraphDB)
ops/outbox-projector.md
10/20/2018, 1:46:40 AM6e6c332598258
ops/procurement-readiness-packetProcurement Readiness Packet
ops/procurement-readiness-packet.md
10/20/2018, 1:46:40 AM9c5685e82cca7
ops/product-constraintsProduct Constraints Gate
ops/product-constraints.md
10/20/2018, 1:46:40 AM2471d6d54d4e3
ops/reconciliation-serviceReconciliation Service (C2)
ops/reconciliation-service.md
10/20/2018, 1:46:40 AM605162c313ea9
ops/review-goalsReview Goals Audit
ops/review-goals.md
10/20/2018, 1:46:40 AM3cc1459601a26
ops/search-graph-provisioningSolr 9 + GraphDB Provisioning
ops/search-graph-provisioning.md
10/20/2018, 1:46:40 AM6fc1b15279a84
ops/security-dr-drillPen Test Baseline + DR Drill Runbook
ops/security-dr-drill.md
10/20/2018, 1:46:40 AM3a766ef3e2afc
progress/2026-05-31/era-c-readiness-snapshotEra C Readiness Snapshot (May 31, 2026)
progress/2026-05-31/era-c-readiness-snapshot.md
10/20/2018, 1:46:40 AM39672614ceb53
progress/era-historyMeta Museum — Era Delivery History
progress/era-history.md
10/20/2018, 1:46:40 AM4776bd307557c2
providers/harvard-art-museumsHarvard Art Museums API Integration Plan
providers/harvard-art-museums.md
10/20/2018, 1:46:40 AM11fa8b980154f5
providers/louvre-collections-jsonLouvre Collections JSON Integration Plan
providers/louvre-collections-json.md
10/20/2018, 1:46:40 AM11775f91a8d813
providers/moma-open-dataMoMA Open Data Snapshot
providers/moma-open-data.md
10/20/2018, 1:46:40 AM3bcdd2d8a3e6b
providers/museumsvictoria-collections-apiMuseums Victoria Collections API Integration
providers/museumsvictoria-collections-api.md
10/20/2018, 1:46:40 AM7a5408e229cdc
providers/nga-open-dataNational Gallery of Art (NGA) Open Data Integration Plan
providers/nga-open-data.md
10/20/2018, 1:46:40 AM1151c4807c8de0
providers/princeton-art-museumPrinceton University Art Museum API Integration Plan
providers/princeton-art-museum.md
10/20/2018, 1:46:40 AM11c8823f65ee41
providers/rkd-knowledge-graphRKD Knowledge Graph Integration Plan
providers/rkd-knowledge-graph.md
10/20/2018, 1:46:40 AM162b4b42f2ad42
providers/smithsonian-open-accessSmithsonian Open Access Integration Plan
providers/smithsonian-open-access.md
10/20/2018, 1:46:40 AM12db1ffa4cab02
providers/vanda-collections-apiVictoria and Albert Museum (V&A) Collections API Integration Plan
providers/vanda-collections-api.md
10/20/2018, 1:46:40 AM11755d93972233
qualityQuality & Performance
quality.md
10/20/2018, 1:46:40 AM6174add040960
reconciliation/exhibition-literature-reconciliationExhibition + Literature Reconciliation (B6.1)
reconciliation/exhibition-literature-reconciliation.md
10/20/2018, 1:46:40 AM7054bcea75896
responsible-aiResponsible AI
responsible-ai.md
10/20/2018, 1:46:40 AM8f90006650821
risk-registerRisk Register
risk-register.md
10/20/2018, 1:46:40 AM471caef3f084e
roadmap-to-10Roadmap to 10/10
roadmap-to-10.md
7/11/2026, 12:00:00 AM80adbd67fa416
roadmapMeta Museum Roadmap
roadmap.md
7/7/2026, 12:00:00 AM18988d4c1562ff
rsi-wikiAI-RSI compounding wiki
rsi-wiki.md
10/20/2018, 1:46:40 AM8b64914fe6f20
wikibase-cloud-migration-checklistWikibase Cloud -> Self-Host Migration Checklist
wikibase-cloud-migration-checklist.md
10/20/2018, 1:46:40 AM12170657fcbf2b

    Current Document: Environment Variables

    Source updated 10/20/2018, 1:46:40 AM · SHA-256 d45d28b1acb7 · 143 lines

    Canonical ID: env

    JSON for this doc:/api/docs/content?path=env.md

    Human link:/docs?doc=env.md

    Canonical API endpoint:/api/docs/content?path=env.md

    Sections (stable anchors):

    Environment Variables

    This file documents the active Meta Museum environment-variable surface.

    Core app

    | Variable | Required | Default | Purpose |

    |---|---|---|---|

    | `PORT` | No | `3000` | App listen port in local/dev or production process runners. |

    | `NODE_ENV` | No | runtime-set | Standard Node mode (`development`, `test`, `production`). |

    Storage and database

    | Variable | Required | Default | Purpose |

    |---|---|---|---|

    | `DATABASE_URL` | Required for Postgres mode | none | Postgres connection string for JSONB storage-of-record mode; launch preflight expects `sslmode=verify-full` for Neon/Postgres environments. |

    | `METAMUSEUM_STORAGE_MODE` | No | auto (`postgres` if `DATABASE_URL` present; else `file`) | Storage mode selector: `file`, `double-write`, `postgres`. |

    GitHub issues/SSE

    | Variable | Required | Default | Purpose |

    |---|---|---|---|

    | `GITHUB_OWNER` | No | repo default | Repository owner for issues inventory fetches. |

    | `GITHUB_REPO` | No | repo default | Repository name for issues inventory fetches. |

    | `ISSUE_POLL_MS` | No | service default | Poll cadence for issue refresh behavior. |

    | `GITHUB_TOKEN` | No | none | Optional authenticated GitHub API access for higher rate limits. |

    Auth.js / GitHub OAuth

    | Variable | Required | Default | Purpose |

    |---|---|---|---|

    | `AUTH_SECRET` | Yes in production | dev fallback (`metamuseum-dev-auth-secret-change-me`) when unset outside production | Auth.js secret for session/JWT security. |

    | `AUTH_GITHUB_ID` | Yes for GitHub sign-in | none | GitHub OAuth app client ID. |

    | `AUTH_GITHUB_SECRET` | Yes for GitHub sign-in | none | GitHub OAuth app client secret. |

    | `AUTH_TRUST_HOST` | Optional | unset | Host trust override for Auth.js in certain deployments. |

    Secret rotation evidence

    | Variable | Required | Default | Purpose |

    |---|---|---|---|

    | `METAMUSEUM_SECRET_ROTATION_CONFIRMED_AT` | Production launch preflight yes | none | Non-secret ISO timestamp/date for the latest exposed-secret rotation. |

    | `METAMUSEUM_SECRET_ROTATION_KEYS` | Production launch preflight yes | none | Comma-separated key names rotated after exposure; production preflight expects `AUTH_SECRET`, `AUTH_GITHUB_SECRET`, `DATABASE_URL`, `ANTHROPIC_API_KEY`, `SMITHSONIAN_API_KEY`, and `METAMUSEUM_TEST_ROLE_OVERRIDE_TOKEN`. |

    Roles and allowlists

    | Variable | Required | Default | Purpose |

    |---|---|---|---|

    | `MM_RESEARCHER_ALLOWLIST` | No | empty | Comma-separated identities granted `researcher`. |

    | `MM_EDITOR_ALLOWLIST` | No | empty | Comma-separated identities granted `editor`. |

    | `MM_ADMIN_ALLOWLIST` | No | empty | Comma-separated identities granted `admin`. |

    Optional provider keys (as providers require)

    | Variable | Required | Default | Purpose |

    |---|---|---|---|

    | `SMITHSONIAN_API_KEY` | Required for Smithsonian live API mode | none | Smithsonian Open Access API key. |

    | `HARVARD_API_KEY` | Required for Harvard live API mode | none | Harvard Art Museums API key. |

    | `RKD_TRIPLY_TOKEN` | Optional/depends on endpoint policy | none | RKD Triply API bearer token. |

    Validation service

    | Variable | Required | Default | Purpose |

    |---|---|---|---|

    | `VALIDATION_SERVICE_URL` | Launch readiness yes | local default | URL for FastAPI validation microservice proxy (`/api/validate`); production readiness uses `https://metamuseum-validation.onrender.com/validate`. |

    | `VALIDATION_TIMEOUT_MS` | No | `15000` | Runtime timeout for strict and non-strict validation proxy requests; strict `/api/validate` returns `502` when this budget is exceeded. |

    | `METAMUSEUM_STRICT_VALIDATION_PUBLIC` | No | off in production | Set to `1`/`true`/`yes`/`on` only when strict `/api/validate` is intentionally public. Production route handling returns `404` by default, and deployment preflight treats Render validation as operator-only unless this flag is enabled. |

    | `METAMUSEUM_VALIDATION_SERVICE_CAPACITY` | Production when using Render validation | none | Non-secret capacity declaration for user-facing strict validation. Set to `paid`, `reserved`, `dedicated`, or another accepted no-sleep value after upgrading the Render validation service; production preflight fails an `onrender.com` strict validator without it. |

    | `METAMUSEUM_VALIDATION_SERVICE_MAX_HEALTH_MS` | No | `5000` | User-facing strict-validation health budget checked by deployment preflight separately from the longer cold-start probe timeout. |

    Reconciliation service

    | Variable | Required | Default | Purpose |

    |---|---|---|---|

    | `RECONCILIATION_SERVICE_URL` | Launch readiness yes | unset | Deployed FastAPI reconciliation service base URL; production readiness uses `https://metamuseum-reconciliation.onrender.com`. When unset, the app uses in-process deterministic reconciliation plus the optional LLM tiebreaker. |

    | `METAMUSEUM_RECONCILIATION_SERVICE_URL` | No | unset | Legacy/alternate name accepted by deployment preflight for the same deployed reconciliation service base URL. |

    | `RECONCILIATION_REDIS_URL` | Service only | `redis://127.0.0.1:6379/0` | Redis cache URL for the FastAPI reconciliation service. |

    | `RECONCILIATION_HTTP_TIMEOUT_SECONDS` | Service only | `15` | Per-provider HTTP timeout inside the FastAPI reconciliation service. |

    AG2 worker and bridge

    | Variable | Required | Default | Purpose |

    |---|---|---|---|

    | `METAMUSEUM_AG2_BRIDGE_ENABLED` | No | `0` | Enables the internal AG2 bridge for eligible review agents only; keep disabled in production unless the AG2 worker runbook evidence is current. |

    | `METAMUSEUM_AG2_BRIDGE_URL` | Required only when bridge is enabled | none | Internal AG2 worker endpoint, usually `http://127.0.0.1:7788/ag2/agents/run`. |

    | `METAMUSEUM_AG2_BRIDGE_TIMEOUT_MS` | No | `5000` | Bridge request timeout, clamped by code; timeout returns local review fallback. |

    | `METAMUSEUM_AG2_WORKER_HOST` | No | `127.0.0.1` | Bind host for `services/ag2-worker`; keep loopback or private. |

    | `METAMUSEUM_AG2_WORKER_PORT` | No | `7788` | Bind port for the local AG2 worker. |

    | `METAMUSEUM_AG2_WORKER_MAX_RECORDS` | No | `50` | Maximum records accepted per worker request. |

    | `METAMUSEUM_AG2_WORKER_MAX_COLUMNS` | No | `100` | Maximum mapping columns accepted per worker request. |

    | `METAMUSEUM_AG2_EVAL_TARGET` | No | `local` | Target label for `pnpm ag2:worker:eval`; production requires sign-off. |

    | `METAMUSEUM_AG2_OPERATOR_NAME` | Production eval only | none | Operator identity recorded in AG2 worker eval artifacts. |

    | `METAMUSEUM_AG2_OPERATOR_SIGNED_AT` | Production eval only | none | ISO timestamp for operator sign-off. |

    | `METAMUSEUM_AG2_OPERATOR_SCOPE` | Production eval only | none | Scope/rationale for AG2 bridge enablement sign-off. |

    Launch readiness / observability

    | Variable | Required | Default | Purpose |

    |---|---|---|---|

    | `BASE_URL` | Required for launch smoke/SLO commands and production social previews | `http://localhost:3000` in local scripts | Deployed app URL for smoke, a11y, k6 SLO commands, and absolute metadata. In production it must match `METAMUSEUM_PUBLIC_READ_BASE_URL`. |

    | `METAMUSEUM_PUBLIC_READ_BASE_URL` | Required in production and when using probe uptime source | falls back to `BASE_URL` for telemetry sync | Public-read probe and share-preview base URL. In production it must be the same public HTTPS URL as `BASE_URL`, because Open Graph image URLs are resolved for external crawlers against this base. |

    | `METAMUSEUM_UPTIME_PROMETHEUS_URL` | Required when using Prometheus uptime source | none | Prometheus base URL for 30-day public-read uptime queries. |

    | `METAMUSEUM_UPTIME_PROMQL_AVAILABILITY` | No | `avg_over_time(probe_success{job="metamuseum-public-read"}[30d])` | PromQL expression for 30-day availability. |

    | `METAMUSEUM_UPTIME_PROMQL_SAMPLE_COUNT` | No | `count_over_time(probe_success{job="metamuseum-public-read"}[30d])` | PromQL expression for 30-day sample count. |

    | `METAMUSEUM_UPTIME_PROBE_PATHS` | No | `/`, `/api/health`, `/api/activity` | Comma-separated paths for scheduled probe uptime evidence; probe history records per-path URL, status, duration, and error details. |

    | `METAMUSEUM_UPTIME_PROBE_TIMEOUT_MS` | No | `5000` | Timeout for public-read probe requests. |

    | `IIIF_TILE_URL` | Required for launch SLO evidence | local icon fallback in k6 | CDN-backed IIIF tile URL for the SOTA §20.4 tile p95 check. |

    | `METAMUSEUM_EVIDENCE_BASE_URL` | Required for deployed-target nightly evidence | none | GitHub Actions variable copied to `BASE_URL` for nightly k6, AI-query telemetry seeding, and adoption proof. |

    | `METAMUSEUM_EVIDENCE_IIIF_TILE_URL` | Required for deployed-target nightly SLO evidence | none | GitHub Actions variable copied to `IIIF_TILE_URL` for the nightly IIIF tile p95 check. |

    | `METAMUSEUM_EVIDENCE_SPARQL_URL` | Required for deployed-target SPARQL SLO evidence | none | GitHub Actions variable copied to `SPARQL_URL` for the nightly whitelisted SPARQL p95 check. |

    | `METAMUSEUM_EVIDENCE_SPARQL_QUERY` | No | k6 script default | Optional GitHub Actions query override copied to `SPARQL_QUERY` for the nightly SPARQL p95 check. |

    | `METAMUSEUM_EVIDENCE_AI_QUERY` | No | `find art records` | Representative deployed `/api/ai/query` prompt used by the nightly evidence workflow before telemetry sync. |

    | `METAMUSEUM_KPI_EVIDENCE_PATH` | No | `monitoring/kpi-evidence.json` | Optional aggregate SOTA §26 KPI evidence file for record-enrichment and reconciliation metrics. |

    | `METAMUSEUM_DEPLOYMENT_TARGET` | No | `staging` | Default target for `pnpm launch:preflight`; allowed values: `staging`, `production`. |

    | `METAMUSEUM_SKIP_ENV_FILES` | No | unset | Set to `1`/`true`/`yes` for explicit production evidence runs that must not load local `.env*` files, such as `pnpm launch:preflight:production` when a local staging smoke token exists. |

    | `METAMUSEUM_EXTERNAL_SERVICE_PROBE_TIMEOUT_MS` | No | `45000` | Timeout used by deployment preflight when probing configured validation/reconciliation Render `/health` endpoints. |

    | `METAMUSEUM_A11Y_EVIDENCE_PATH` | No | `artifacts/launch/a11y-latest.json` | Output path for `pnpm a11y:check` launch-review evidence. |

    | `METAMUSEUM_EXPLORE_SMOKE_EVIDENCE_PATH` | No | `artifacts/launch/explore-smoke-latest.json` | Output path for `pnpm smoke:explore:matrix` launch-review evidence. |

    | `METAMUSEUM_TEST_ROLE_OVERRIDE_TOKEN` | Staging smoke only | none | Enables researcher-role smoke checks; generate/update local `.env` with `pnpm launch:smoke-token`, copy the same value to the staging server and smoke runner, and never set it for production. |

    | `METAMUSEUM_ACTIVITY_CONSUMER_ID` | Required for `pnpm activity:adoption:probe` unless `--consumer-id` is passed | none | Partner-owned declared consumer ID sent as `x-linked-art-consumer-id` to prove `/api/activity` adoption. |

    | `METAMUSEUM_ACTIVITY_CONSUMER_IDS` | Required for `pnpm activity:adoption:matrix` unless `--consumer-id`/`--consumer-ids` is passed | none | Comma-separated partner-owned declared consumer IDs used to prove the full three-consumer `/api/activity` adoption checkpoint. |

    | `NEXT_PUBLIC_GA_MEASUREMENT_ID` | No | none | Public GA4 measurement ID for the website data stream. Set to `G-WPGJX5H0S7` for the current Meta Museum property/stream to load the Google tag once from the root layout. Consent Mode v2 defaults deny ad storage, ad user data, ad personalization, and analytics storage until the browser has a persisted analytics-consent choice; advertising consent remains denied even when analytics is accepted. |

    Scheduled worker drains

    | Variable | Required | Default | Purpose |

    |---|---|---|---|

    | `CRON_SECRET` | Yes when a cron drain is enabled | none | Shared bearer token for `/api/cron/outbox` and `/api/cron/publish`; Vercel Cron sends `Authorization: Bearer $CRON_SECRET`. Disabled scheduled drains return `200` no-op JSON without this secret so idle schedules do not inflate Vercel error rate. |

    | `METAMUSEUM_OUTBOX_CRON_ENABLED` | Required before projection targets are live | off | Set to `1` to let `/api/cron/outbox` drain one bounded outbox projector batch. Production preflight fails when `OUTBOX_PROJECT_TO_SOLR` or `OUTBOX_PROJECT_TO_GRAPHDB` is enabled without this flag and `CRON_SECRET`. |

    | `METAMUSEUM_OUTBOX_CRON_LIMIT` | No | `25` | Maximum outbox events claimed per cron invocation, clamped by code. |

    | `METAMUSEUM_OUTBOX_CRON_WORKER_ID` | No | generated per invocation | Optional stable worker id for outbox cron logs. |

    | `OUTBOX_PROJECT_TO_SOLR` / `OUTBOX_PROJECT_TO_GRAPHDB` | Required only when projection targets are live | off | Projection target gates used by the outbox projector and cron drain. Set at least one to `1` only after Solr/GraphDB are provisioned and `/api/cron/outbox` is scheduled/enabled; projector calls skip and cron will not claim outbox events without an explicit target. |

    | `METAMUSEUM_PUBLISH_QUEUE_CRON_ENABLED` | Required before live publication endpoints/tokens are configured | off | Set to `1` to let `/api/cron/publish` process ready publish queue items. Production preflight fails when live MediaWiki/Wikibase endpoints or bot tokens are configured without this flag and `CRON_SECRET`. |

    | `METAMUSEUM_PUBLISH_QUEUE_CRON_MAX_ITEMS` | No | `1` | Maximum publish queue items processed per cron invocation, clamped by code. |

    | `METAMUSEUM_PUBLISH_QUEUE_PATH` | No | `storage/publish-queue.json` | Publish queue document path; default is managed storage and Postgres-backed in `postgres` mode. |

    | `METAMUSEUM_PUBLISH_SCHEDULE_PATH` | No | `distribution/schedule.yaml` | Distribution schedule used by the publish queue worker. |

    Notes

    • Do not commit secrets in `.env` files.
    • Rotate any legacy OAuth credentials that were previously exposed.
    • For production credential rotation (`AUTH_SECRET`, `AUTH_GITHUB_SECRET`), follow `docs/ops/auth-credential-rotation.md`(docs/ops/auth-credential-rotation.md).
    • Runtime validation for key env vars is enforced in `src/utils/env.ts`.

    AI/agent quick endpoints