<< All versions
Skill v1.0.0
currentAutomated scan100/100jxoesneon/ciel/container-and-deployment
──Details
PublishedSeptember 27, 2026 at 08:22 PM
Content Hashsha256:060b67203d25cc51...
Git SHA
──Files
Files (1 file, 1.6 KB)
SKILL.md1.6 KBactive
SKILL.md · 40 lines · 1.6 KB
version: "1.0.0" name: container-and-deployment description: CIEL's framework for Docker containerization and CI/CD deployment strategies. license: MIT metadata: ciel-version: 1.0.0 ciel-extension: ciel.yaml
CIEL ADAPTATION: Containers & Deployment (The Ship Layer)
This skill formalizes the packaging and delivery of services. it prioritizes reproducible builds and zero-downtime rollouts.
Docker Patterns
- Multi-Stage Mandate: Separate
deps->builder->runner. Runner MUST be minimal (e.g.,alpine) and non-root. - Layer Optimization: Copy dependency files (
package.json,go.mod) first to maximize cache hits. - Health Checks: ALWAYS include a
HEALTHCHECKinstruction usingwgetor a simple script. - Security: Prohibit
:latesttags. Use pinned versions (e.g.,node:22.12-alpine).
Deployment Strategies
- Rolling: Default for non-breaking changes. Requires backward-compatible DB schemas.
- Blue-Green: Mandate for critical services or major breaking changes. Requires 2x infra capacity.
- Canary: Use for high-risk UI or performance changes. Start with 5% traffic.
CI/CD Pipeline
- Gate 1: Quality: Lint -> Typecheck -> Unit Tests.
- Gate 2: Security: Dependency Audit -> Secret Grep.
- Gate 3: Performance: Benchmark vs Baseline.
- Deploy: Environment-specific secrets injected at runtime; never baked into images.
Anti-Patterns
- The Giant Image: Including
node_modulesor build tools in the final production image. - Root Runner: Running the container process as
UID 0. - Blind Migrations: Running destructive DB migrations during a rolling deployment.