Skip to content

[STORY 3.1] Secure AI Edge Proxy Gateway #24

@RamonRiosJr

Description

@RamonRiosJr

📝 Description

Remove the Gemini SDK bundle from the frontend to drastically reduce client-side footprint, and expose a secure serverless gateway protecting keys from browser extraction.

🎯 Acceptance Criteria

  • Build /api/chat Route Handler deployed to Vercel/Netlify Edge
  • Move Google Gemini SDK execution exclusively to the server
  • Construct dynamic system prompt injecting the card owner's bio/skills natively
  • Ensure the frontend application contains zero API keys

Metadata

Metadata

Assignees

No one assigned

    Labels

    P0: CriticalMust be resolved before any merge. Affects production security or availability.area: backendServer, API, or serverless functions.type: securityRelates to authentication, secrets, or attack surface.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions