use Uuid;
use uuid;
/// Default tenant ID for single-tenant or auth-disabled deployments.
///
/// Used when:
/// - Auth is disabled (on-premises single-user mode)
/// - Default/fallback tenant ID is needed (e.g., migrations, examples)
///
/// In multi-tenant production deployments, tenant IDs come from
/// the authentication layer or tenant resolver.
pub const DEFAULT_TENANT_ID: Uuid = uuid!;
/// Default subject ID for single-tenant or auth-disabled deployments.
///
/// Used when:
/// - Auth is disabled (on-premises single-user mode)
/// - Default/fallback subject ID is needed
///
/// In production deployments, subject IDs come from the authentication layer.
pub const DEFAULT_SUBJECT_ID: Uuid = uuid!;
/// Header (HTTP) / metadata (gRPC) key carrying the platform-plane internal
/// credential. Always lower-case (canonical for both HTTP/2 and gRPC metadata).
///
/// Platform-plane (system) calls use this key — **never** `Authorization`, to
/// avoid colliding with the tenant-plane user JWT
/// (`cpt-cf-adr-platform-plane-auth` / `cpt-cf-adr-two-plane-auth`).
pub const INTERNAL_TOKEN_HEADER: &str = "x-toolkit-internal-token";