From 9934100f3d45ab7dc622d708ef956de43ef9028f Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Vi=CC=81ctor=20Falco=CC=81n?= Date: Tue, 11 Aug 2026 13:57:30 +0200 Subject: [PATCH] chore(inertia): keep v3 DevTools request recording opt-in v3 records every request's page props to storage/inertia-devtools and defaults to on in local. Those dumps carry whole transaction and balance payloads, and redaction only covers credential-shaped keys, so this is gated behind INERTIA_DEVTOOLS_ENABLED instead. --- config/inertia.php | 24 +++++++++++++++++++++--- 1 file changed, 21 insertions(+), 3 deletions(-) diff --git a/config/inertia.php b/config/inertia.php index 9bc0f5ee..0ef9cffc 100644 --- a/config/inertia.php +++ b/config/inertia.php @@ -27,9 +27,8 @@ return [ | Pages |-------------------------------------------------------------------------- | - | The values described here are used to locate Inertia components on the - | filesystem. For instance, when using `assertInertia`, the assertion - | attempts to locate the component as a file relative to the paths. + | Where Inertia page components live on the filesystem. Used both to + | resolve components at runtime and to locate them from `assertInertia`. | */ @@ -67,4 +66,23 @@ return [ ], + /* + |-------------------------------------------------------------------------- + | DevTools + |-------------------------------------------------------------------------- + | + | Inertia v3 records every request to disk so the DevTools extension can + | read it back, and defaults to on in local. Those dumps hold whole page + | prop payloads — transactions, balances — and redaction only covers + | credential keys, so we keep it opt-in. Set INERTIA_DEVTOOLS_ENABLED=true + | in your own .env when you actually need it. + | + */ + + 'devtools' => [ + + 'enabled' => env('INERTIA_DEVTOOLS_ENABLED', false), + + ], + ];