fix: auth and CI for moderation service (#391)
- make /admin public so HTML page loads (auth handled client-side for API calls)
- reject protected requests if MODERATION_AUTH_TOKEN not set (security fix)
- add CI workflow to auto-deploy on push to main when moderation/** changes
requires FLY_API_TOKEN_MODERATION secret to be set in GitHub
🤖 Generated with [Claude Code](https://claude.com/claude-code)
Co-authored-by: Claude <noreply@anthropic.com>
authored by
zzstoatzz.io
Claude
and committed by
GitHub
7bbe8f66
7e334b38