Files
foxhunt/crates/web-gateway
jgrusewski 0ac8aeee52 refactor(common): make init_observability sync with optional OTLP endpoint
Remove unnecessary async from init_observability -- body was fully sync.
Change otlp_endpoint from &str to Option<&str> -- when None, OTLP layer
is skipped (fmt-only mode). Update all 8 service callers.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2026-03-01 23:03:13 +01:00
..

web-gateway

REST and WebSocket gateway for the Foxhunt web dashboard. Axum 0.7.9 proxying HTTP to backend gRPC services.

Key Types

  • AppState — shared state (gRPC channels, WS broadcast, config)
  • GatewayConfig — configuration loaded from environment variables

Modules

  • auth — JWT validation and login handler
  • routes — Axum router and HTTP handlers
  • grpc — Tonic clients and gRPC stream bridges
  • ws — WebSocket upgrade, topic subscriptions, keepalive
  • rate_limit — per-IP token-bucket rate limiter (3 tiers)
  • error — unified error types and HTTP error responses

Rate Limits

Tier Limit Endpoints
Public 10 req/min POST /api/auth/login
Trading 200 req/min /api/trading/*, /api/risk/*, /api/ml/*
Compute 30 req/min /api/training/*, /api/backtest/*, /api/tune/*

Security

  • JWT (32-char min secret), CORS, 1MB body limit, HSTS
  • WebSocket topic whitelist (8 topics), per-connection rate limit, max 20 subs
  • X-Request-Id propagation