## Problem When `NODE_ENV` is development, the server was only using the dev public key to verify enterprise JWTs. Production keys are signed with the production private key, so they failed verification with the dev public key, resulting in "Invalid enterprise key" errors. ## Solution Try both production and dev public keys when in development, so production keys work when testing locally. In production, only the production key is used (unchanged behavior). ## Changes - `enterprise-plan.service.ts`: Replaced `getPublicKey()` with `getPublicKeysToTry()` that returns both keys in development; updated `verifyJwt()` to try each key until one succeeds - `enterprise-plan.service.spec.ts`: Added test for production key acceptance when `NODE_ENV` is development Made with [Cursor](https://cursor.com) --------- Co-authored-by: cubic-dev-ai[bot] <191113872+cubic-dev-ai[bot]@users.noreply.github.com> Co-authored-by: claude[bot] <41898282+claude[bot]@users.noreply.github.com> Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com>