dify/api
Yunlu Wen 1983e842ca
feat: support azure keyvault (#39933)
Co-authored-by: autofix-ci[bot] <114827586+autofix-ci[bot]@users.noreply.github.com>
Co-authored-by: -LAN- <laipz8200@outlook.com>
2026-08-07 00:42:13 +00:00
..
.idea
.vscode feat: collaboration (#30781) 2026-04-16 02:21:04 +00:00
clients refactor: introduce agent working environment architecture (#39480) 2026-07-28 13:16:05 +00:00
commands feat: support azure keyvault (#39933) 2026-08-07 00:42:13 +00:00
configs feat: support azure keyvault (#39933) 2026-08-07 00:42:13 +00:00
constants fix: gate Agent access until first publish (#40105) 2026-08-06 12:36:24 +00:00
context chore(api): convert AppContext from ABC to Protocol (#37203) 2026-06-09 03:16:39 +00:00
contexts chore(api): align Python support with 3.12 (#34419) 2026-04-02 05:07:32 +00:00
controllers fix: gate Agent access until first publish (#40105) 2026-08-06 12:36:24 +00:00
core feat: support azure keyvault (#39933) 2026-08-07 00:42:13 +00:00
dev chore: bump pyrefly version (#39876) 2026-08-03 05:59:01 +00:00
docker feat: create app init rbac scope to all and add workspace members. (#38636) 2026-07-10 09:31:41 +00:00
enterprise ci: add flag for linter (#37018) 2026-06-08 04:53:12 +00:00
enums refactor: centralize deployment edition in system features (#39454) 2026-07-24 07:15:02 +00:00
events chore: more upload file size for paid user (#39967) 2026-08-06 03:23:16 +00:00
extensions feat: support azure keyvault (#39933) 2026-08-07 00:42:13 +00:00
factories feat(workflow): support LLM environment variables (#39125) 2026-08-04 06:17:13 +00:00
fields chore: more upload file size for paid user (#39967) 2026-08-06 03:23:16 +00:00
libs feat: support azure keyvault (#39933) 2026-08-07 00:42:13 +00:00
machinery refactor(api): extract workspace list into layered application service (#39822) 2026-08-05 02:36:16 +00:00
migrations feat(agent): make home snapshots optional and use backend defaults (#39702) 2026-07-29 02:01:12 +00:00
models feat(workflow): support LLM environment variables (#39125) 2026-08-04 06:17:13 +00:00
openapi/markdown fix: gate Agent access until first publish (#40105) 2026-08-06 12:36:24 +00:00
providers feat: support TiDB Vector full-text and hybrid search (#38112) 2026-08-06 07:08:42 +00:00
repositories refactor(api): extract workspace member listing into layered service (#39974) 2026-08-06 01:08:39 +00:00
schedule refactor: explicit DB session propagation across backend paths (#38559) 2026-07-15 06:48:28 +00:00
services feat: support azure keyvault (#39933) 2026-08-07 00:42:13 +00:00
tasks chore: more upload file size for paid user (#39967) 2026-08-06 03:23:16 +00:00
templates feat: collaboration (#30781) 2026-04-16 02:21:04 +00:00
tests feat: support azure keyvault (#39933) 2026-08-07 00:42:13 +00:00
.dockerignore
.env.example feat: support azure keyvault (#39933) 2026-08-07 00:42:13 +00:00
.importlinter feat: support azure keyvault (#39933) 2026-08-07 00:42:13 +00:00
.ruff.toml chore: reorg imports (#35308) 2026-04-16 08:50:02 +00:00
AGENTS.md refactor(agents): simplify repository context (#39583) 2026-07-26 06:13:37 +00:00
app_factory.py feat: support azure keyvault (#39933) 2026-08-07 00:42:13 +00:00
app.py perf(workflow-generator): parallelize node config generation (#38975) 2026-07-17 02:34:15 +00:00
celery_entrypoint.py chore(api): clean redundant type ignores (Fixes #24494) (#37358) 2026-06-12 03:56:56 +00:00
celery_healthcheck.py fix: lighten the health checks for the Worker and Worker Beat services, and disable them by default (#34572) 2026-04-06 02:26:26 +00:00
cnt_base.sh
conftest.py test(api): manage backend pytest services natively (#36235) 2026-05-19 07:52:15 +00:00
dify_app.py refactor(api): tighten login and wrapper typing (#34447) 2026-04-02 09:36:58 +00:00
Dockerfile chore: bump nltk from 3.9.4 to 3.10.0 in /api (#39503) 2026-07-28 08:19:15 +00:00
Dockerfile.dockerignore fix(api): fix incorrect docker build context (#37438) 2026-06-15 06:29:58 +00:00
gunicorn.conf.py chore(api): clean redundant type ignores (Fixes #24494) (#37358) 2026-06-12 03:56:56 +00:00
knowledge-fs-contract.lock.json feat(dataset): expose New RAG KnowledgeFS contracts (#39314) 2026-07-23 01:48:36 +00:00
pyproject.toml feat: support azure keyvault (#39933) 2026-08-07 00:42:13 +00:00
pyrefly-local-excludes.txt chore(api): Fix several typing errors (#37248) 2026-06-12 14:02:09 +00:00
pytest.ini chore: add pytest XML and branch coverage reports (#33730) 2026-03-19 17:08:34 +08:00
README.md chore: Remove pyright in favor of pyrefly (#36154) 2026-05-14 05:49:08 +00:00
uv.lock feat: support azure keyvault (#39933) 2026-08-07 00:42:13 +00:00

Dify Backend API

Setup and Run

Important

In the v1.3.0 release, poetry has been replaced with uv as the package manager for Dify API backend service.

uv and pnpm are required to run the setup and development commands below.

The scripts resolve paths relative to their location, so you can run them from anywhere.

  1. Run setup (copies env files and installs dependencies).

    ./dev/setup
    
  2. Review api/.env, web/.env.local, and docker/middleware.env values (see the SECRET_KEY note below).

  3. Start middleware (PostgreSQL/Redis/Weaviate).

    ./dev/start-docker-compose
    
  4. Start backend (runs migrations first).

    ./dev/start-api
    
  5. Start Dify web service.

    ./dev/start-web
    

    ./dev/setup and ./dev/start-web install JavaScript dependencies through the repository root workspace, so you do not need a separate cd web && pnpm install step.

  6. Set up your application by visiting http://localhost:3000.

  7. Start the worker service (async and scheduler tasks, runs from api).

    ./dev/start-worker
    
  8. Optional: start Celery Beat (scheduled tasks).

    ./dev/start-beat
    

Environment notes

Important

When the frontend and backend run on different subdomains, set COOKIE_DOMAIN to the sites top-level domain (e.g., example.com). The frontend and backend must be under the same top-level domain in order to share authentication cookies.

  • Generate a SECRET_KEY in the .env file.

    bash for Linux

    sed -i "/^SECRET_KEY=/c\\SECRET_KEY=$(openssl rand -base64 42)" .env
    

    bash for Mac

    secret_key=$(openssl rand -base64 42)
    sed -i '' "/^SECRET_KEY=/c\\
    SECRET_KEY=${secret_key}" .env
    

Testing

  1. Install dependencies for both the backend and the test environment

    cd api
    uv sync --group dev
    
  2. Run the tests locally with mocked system environment variables in tool.pytest_env section in pyproject.toml, more can check Claude.md

    cd api
    uv run pytest                           # Run all tests
    uv run pytest tests/unit_tests/         # Unit tests only
    uv run pytest tests/integration_tests/  # Integration tests
    
    # Code quality
    ./dev/reformat               # Run all formatters and linters
    uv run ruff check --fix ./   # Fix linting issues
    uv run ruff format ./        # Format code
    uv run pyrefly check         # Type checking
    

Generate TS stub

uv run dev/generate_swagger_specs.py --output-dir openapi

use https://jsontotable.org/openapi-to-typescript to convert to typescript