fix(admin): fresh SSR reads, atomic user delete + sanitized errors, cookie-rotation in middleware, no-store on admin APIs
This commit is contained in:
@@ -1,6 +1,6 @@
|
||||
import { NextResponse } from 'next/server';
|
||||
import { requireAdminApi } from '@/lib/auth/admin-guard';
|
||||
import { computeMetrics } from '@/lib/admin/metrics';
|
||||
import { jsonNoStore } from '@/lib/admin/response';
|
||||
|
||||
export const runtime = 'nodejs';
|
||||
export const dynamic = 'force-dynamic';
|
||||
@@ -10,5 +10,5 @@ export async function GET() {
|
||||
if (!auth.ok) return auth.response;
|
||||
|
||||
const metrics = await computeMetrics();
|
||||
return NextResponse.json(metrics);
|
||||
return jsonNoStore(metrics);
|
||||
}
|
||||
|
||||
Reference in New Issue
Block a user