Skip to content

Auth and Config

Cestercian edited this page Aug 8, 2026 · 1 revision

Auth & Config

Auth providers

All brokered through Supabase Auth:

Method Notes
Google OAuth Primary for creators
Apple Sign In Required for App Store (guideline 4.8); entitlement live; verify on prod Release/TestFlight before submit
Email / password EmailAuthView — universal fallback + App Review path
Anonymous Enabled on artistant-dev only for local testing

Deep links / redirects use scheme in.artistant.app://… (e.g. social-linked callback).

Build configurations

Config Target backend
Debug-Dev artistant-dev (or local CLI)
Release-Prod artistant-prod

Keys: gitignored Configs/*.local.xcconfig → Info.plist → AppEnvironment.

Never commit .local.xcconfig or service-role keys.

Feature flags (selected)

Flag Default Meaning
subscriptionsEnabled off Apple IAP paywall + entitlement path
realtimeEnabled on in Release-Prod Chat Realtime subscribe

Signing

  • Team: 3VN4X827YF ("Yashaswi Kumar") in project.yml DEVELOPMENT_TEAM
  • Bundle id: in.artistant.app
  • Capabilities: Push, Sign in with Apple
  • Next xcodegen regenerates project.pbxproj — UI-only team changes are wiped

Social OAuth (artists)

  • Instagram: instagram-oauth-start / -callback + per-artist tokens in artist_social_accounts
  • YouTube: one-time consent; no long-lived credential stored
  • Spotify: handle + API key sync (already live)

Secrets live as Edge Function env vars (Supabase Management API) — iOS never sees them.

Clone this wiki locally