export const dynamic = 'force-dynamic' import { timingSafeEqual } from 'crypto' import { NextRequest, NextResponse } from 'next/server' import { sendEffectivenessRecheckNotifications } from '@/lib/notifications/effectiveness-recheck' export async function GET(request: NextRequest) { const auth = request.headers.get('authorization') ?? '' const expected = `Bearer ${process.env.CRON_SECRET ?? ''}` const authBuf = Buffer.from(auth, 'utf8') const expectedBuf = Buffer.from(expected, 'utf8') const valid = authBuf.length === expectedBuf.length && timingSafeEqual(authBuf, expectedBuf) if (!valid) { return NextResponse.json({ error: 'Unauthorized' }, { status: 401 }) } const { notified } = await sendEffectivenessRecheckNotifications() return NextResponse.json({ ok: true, notified }) }