1e1eab3d41ed69166cca8c6d62db5908b6a38bd8
Deploy to Dev / Deploy & Smoke Test (push) Successful in 22s
This is the actual production-breaking bug: the scope-mapping lookup
used ?managed__iexact=..., which this Authentik version doesn't
support as a filter - it silently returns the whole unfiltered list
instead of erroring, so d['results'][0]['pk'] always grabbed the same
first item (the "Proxy outpost" ak_proxy scope, not openid/profile/
email). Every run attached that single wrong scope to the provider,
which meant every real login would fail at the userinfo step with a
403 ("Scope mismatch", token had zero of the required openid scope).
Fixed by filtering on scope_name (the field that actually works) and
added a hard failure if a lookup ever comes up empty, instead of
silently proceeding with a broken scope list.
Manually verified against the live dev-lisilou.jerodrigged.com OIDC
login: full authorization-code+PKCE round trip against a disposable
test user, confirmed valid session cookie with correct admin group
claim. Also PATCHed the already-created provider's property_mappings
directly on auth.jerodrigged.com so dev doesn't need to wait for a
re-run to get the fix.
LisiLou Photography Portfolio
A lightweight, configurable photography portfolio website designed to integrate with Immich for image hosting and client gallery access.
Features
- 🎨 Elegant, modern design - Clean photography-focused aesthetic
- ⚙️ Easy configuration - Update content via JSON files, no code changes needed
- 📱 Fully responsive - Looks great on all devices
- 🖼️ Immich integration - Direct links to shared albums for portfolio and client galleries
- 👥 Multi-photographer support - Configure multiple profiles for different photographers
- 🐳 Docker ready - Easy deployment with Docker and Docker Compose
- 🔄 CI/CD ready - Gitea Actions workflow included
Quick Start
Local Development
- Clone this repository
- Customize
config/site.jsonwith your information - Add your images to
public/images/ - Run with Docker:
docker compose up -d
- Visit
http://localhost:8080
Configuration
All site content is configured through config/site.json. Here's what you can customize:
Site Settings
{
"site": {
"title": "Your Photography Name",
"tagline": "Your tagline here",
"description": "SEO description"
}
}
Social Media
{
"social": {
"instagram": "your.handle",
"facebook": "yourpage",
"pinterest": "yourprofile",
"tiktok": "yourhandle"
}
}
Immich Integration
{
"immich": {
"baseUrl": "https://photos.yourdomain.com",
"publicAlbumPrefix": "/share/"
}
}
Portfolio Categories
{
"portfolio": {
"categories": [
{
"id": "seniors",
"name": "Senior Portraits",
"description": "Celebrate your milestone",
"coverImage": "/images/portfolio/seniors-cover.jpg",
"immichAlbumId": "your-immich-album-share-id"
}
]
}
}
Theme Customization
{
"theme": {
"primaryColor": "#8B7355",
"accentColor": "#D4C5B5",
"textColor": "#2C2C2C",
"backgroundColor": "#FDFBF9"
}
}
Adding Portfolio Images
- Create cover images for each portfolio category
- Place them in
public/images/portfolio/ - Update the
coverImagepaths inconfig/site.json - Get the share IDs from your Immich albums and add them to
immichAlbumId
Client Gallery Access
Clients can enter their gallery code (Immich share ID) on the website. They'll be redirected to their Immich shared album.
Workflow:
- Create a shared album in Immich for your client
- Give them the share ID as their "gallery code"
- They enter it on your website and are taken directly to their photos
Deployment
With Docker Compose
- Copy files to your server:
scp -r . user@server:/opt/lisilou-portfolio/
- Create the external network:
docker network create web
- Start the container:
cd /opt/lisilou-portfolio
docker compose up -d
With Reverse Proxy (Traefik/Nginx)
If using Traefik, add labels to docker-compose.yml:
services:
portfolio:
labels:
- "traefik.enable=true"
- "traefik.http.routers.portfolio.rule=Host(`lisilou.com`)"
- "traefik.http.routers.portfolio.tls=true"
- "traefik.http.routers.portfolio.tls.certresolver=letsencrypt"
Gitea Actions CI/CD
-
Set up Gitea Actions on your Gitea instance
-
Add these secrets to your repository:
REGISTRY_USERNAME- Container registry usernameREGISTRY_PASSWORD- Container registry passwordDEPLOY_HOST- Your server hostnameDEPLOY_USER- SSH usernameDEPLOY_KEY- SSH private key
-
Update
.gitea/workflows/deploy.ymlwith your registry URL -
Push to main branch to trigger automatic deployment
Multi-Photographer Support
To support multiple photographers:
- Create additional config files (e.g.,
config/photographer2.json) - Update
config/profiles.json:
{
"profiles": {
"lisilou": {
"enabled": true,
"domain": "lisilou.com",
"configFile": "site.json"
},
"photographer2": {
"enabled": true,
"domain": "photographer2.com",
"configFile": "photographer2.json"
}
},
"defaultProfile": "lisilou",
"multiTenant": true
}
- Add multi-tenant routing to nginx.conf (or use separate containers)
File Structure
lisilou-portfolio/
├── config/
│ ├── site.json # Main configuration
│ └── profiles.json # Multi-profile config
├── public/
│ └── images/
│ ├── portfolio/ # Portfolio cover images
│ ├── logo.png # Site logo
│ └── favicon.ico # Favicon
├── src/
│ └── index.html # Main HTML file
├── .gitea/
│ └── workflows/
│ └── deploy.yml # CI/CD workflow
├── docker-compose.yml
├── Dockerfile
├── nginx.conf
└── README.md
Updating Content
To update text/settings:
- Edit
config/site.json - The changes are applied immediately (no rebuild needed)
To update images:
- Add new images to
public/images/ - Update paths in
config/site.json - Changes are applied immediately
To update code:
- Edit
src/index.html - Rebuild the Docker image:
docker compose build
docker compose up -d
Or push to Git and let CI/CD handle it.
License
MIT License - Feel free to use and modify for your photography business!
Description
Languages
HTML
63.8%
JavaScript
27.7%
Shell
8%
Dockerfile
0.5%