GET
Safe deployment diagnostics

Authorizations

X-Auditor-Admin-Token
string
header
required

Required when AUDITOR_ADMIN_TOKEN is set in the environment, and — on a network-exposed instance — on the sensitive read prefixes listed on the Overview page. Verified with crypto.timingSafeEqual. Missing or wrong token returns 401. Failed attempts are recorded in audit_log with IP + user agent.

Browser callers may send the pt_admin_token HttpOnly cookie instead; it is accepted everywhere this header is. Obtain it from POST /api/auth/admin-token/login.

Response

200 - application/json

Diagnostics payload.

Safe-to-share deployment diagnostics — privacytracker version, Node version, OS, DB path, schema version, sync state, mutex states. Never includes annotations, AI keys, or app names.