TELSPAY BLANK-SCREEN RECOVERY — v2026.4.1
============================================================

WHY IT HAPPENS
The secured build no longer contains database or payment credentials in the
public application files. If the private configuration is not installed, the
old build displayed a blank page because PHP errors were hidden.

THIS REVISION FIXES THE BLANK PAGE
The browser now displays a safe "Secure service configuration required"
screen with a support reference. The detailed cause remains only in the server
PHP error log.

REQUIRED DEPLOYMENT
1. Copy deployment/telspay_secure.example.php.txt.
2. Edit all placeholders and generate independent random security keys.
3. Save the completed file outside public_html as:
      /home/CPANEL_USER/secure_keys/telspay_secure.php
4. Set permission 0600 on that private file.
5. Apply:
      database/member_app_operational_security_upgrade_2026_4_0.sql
6. Run:
      database/member_app_operational_security_postcheck_2026_4_0.sql
7. Confirm the PHP extensions mysqli, pdo_mysql, curl, openssl, fileinfo and gd
   are enabled. Install Tesseract OCR at the configured private path.
8. Open app-login.php again. If the protected screen remains, give the support
   reference to the server administrator and inspect the PHP error log.

NETWORK-PROVIDER OUTAGE POLICY
VPN/proxy/hosting-positive results are always blocked. The default
TELSPAY_IP_LOOKUP_BLOCK_ON_UNAVAILABLE=0 prevents a third-party API outage from
locking legitimate members out; the unavailable check is still logged.

DO NOT copy live credentials into config/config.php or into this ZIP.
