Store encrypted service-account and group config in the database so Dokploy env vars are optional. Co-authored-by: Cursor <cursoragent@cursor.com>
Admins can enable or revoke store access per viewer; membership syncs to a configurable Google Group without changing app auth. Co-authored-by: Cursor <cursoragent@cursor.com>