- Change session cookie name from better-auth.session_token to session_token
- Increase rate limit to 100 req/min in development (10 in production)
- Fix DATABASE_URL to use URL-encoded password for special characters
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>