HEX
Server: Apache/2.4.46 (Win64) OpenSSL/1.1.1j PHP/8.4.25
System: Windows NT DESKTOP-4TAV2RJ 10.0 build 19045 (Windows 10) AMD64
User: fred (0)
PHP: 8.4.25
Disabled: NONE
Upload Files
File: C:/Users/fred/.codex/.tmp/plugins/plugins/zoom/skills/team-chat/concepts/deployment.md
# Deployment Guide (Team Chat / Chatbot)

## Basic Requirements

- Your webhook endpoint must be reachable by Zoom (public HTTPS).
- Keep secrets out of the repo:
  - `ZOOM_CLIENT_ID`
  - `ZOOM_CLIENT_SECRET`
  - `ZOOM_BOT_JID` (chatbot)
  - `ZOOM_SECRET_TOKEN` (chatbot verification)

## Recommended Production Setup

- Run behind a reverse proxy (TLS termination).
- Use a persistent store for:
  - OAuth tokens (Team Chat API)
  - installation state (Chatbot API)
  - idempotency keys for webhooks (avoid double-processing)

## Local Testing

- Use a tunneling tool to expose your local development host over HTTPS for webhook testing.
- Keep a "dev" app and "prod" app to avoid breaking production while iterating.