Observability
Metrics (from code):
bff_active_sessions_totalbff_token_refresh_success_totalbff_token_refresh_failed_totalbff_session_binding_failures_totaltraefik_forwardauth_rejected_totalbff_oauth_flow_duration_seconds
Prom scraping:
- Annotations on pod:
prometheus.io/scrape: true,prometheus.io/port: 8000,prometheus.io/path: /metrics
Health:
GET /auth/healthused by liveness/readiness/startup probes
Logs:
- Structured security events (session created/invalidated; CSRF; token refresh)