Option 1: Caddy (Recommended)
Caddy provides automatic HTTPS with Let’s Encrypt. Add to yourdocker-compose.yml:
Caddyfile:
.env:
Caddy automatically obtains and renews TLS certificates from Let’s Encrypt. No configuration needed.
Option 2: Nginx Reverse Proxy
If you already have an Nginx reverse proxy:Option 3: Traefik
If you use Traefik as your ingress controller, add labels to theapp service:
Trusted Proxies
When behind a reverse proxy, update your.env to trust the proxy headers:

