2026-08-29 — Platform Google Cloud env sync scripts

  • Added site-nextjs/scripts/sync-google-cloud-env-from-bw.ps1 — pulls FTN Google Cloud / Gemini / OAuth fields from Bitwarden; -PushConvex uses the prod deploy key (Bitwarden dashboard.convex.dev or .env.vercel) and fails closed on CLI errors.

  • Prefer the vault item named FTN Google Cloud so unrelated Gemini items are not selected.

  • Updated apply-platform-oauth-client.ps1 next-steps: create Auth Platform Web client (not IAP), then disable the old non-platform OAuth client.

  • Gitignore scripts/.oauth-platform.local.json and scripts/*.local.json so one-time Console downloads are never committed.