Turn on CORS settings for authentication (if needed).
Enter all your addresses from which your are going to send requests (don't forget to add all the addresses, including https://mywebsite.app/login, https://mywebsite.app/signin, etc
Password encryption
Select the appropriate encryption method for your passwords. Keep in mind that existing user accounts will lose access, and a password reset will be required.