Skip to main content
This page defines the durable media-delivery contract. The current Engine source identity and the older provider evidence are separate: Engine Development source was verified on 2026-08-12, while the last canonical end-to-end provider-media checkpoint recorded here is 2026-04-27. Twilio, Postmark, and Bunny provider state was not reverified on August 12.

Source contract

Provider supplies a media referenceEngine fetches it server-side with provider authenticationEngine buffers the contentEngine uploads it to Bunny StorageBunny CDN serves the public media URLAdmin renders the CDN URL
Provider URLs that require authentication are not browser-rendering truth. The Engine owns authenticated fetch and upload; Admin consumes the resulting CDN URL.

Required server-side configuration contract

These configuration categories describe the source contract without publishing private deployment keys or values. Their presence here does not prove that a deployed environment currently has valid values.

Current source evidence — 2026-08-12

See Current System State and Webhook Routing Strategy for the current source and routing boundary.

Historical provider evidence — 2026-04-27

These are historical checkpoint results, not current provider-health claims. The durable decision remains that provider media must be fetched server-side and rendered from Bunny CDN rather than from authenticated provider URLs.

See also