<< All versions

Skill v1.0.0

currentAutomated scan100/100
jxoesneon/ciel/container-and-deployment
──Details
PublishedSeptember 27, 2026 at 08:22 PM
Content Hashsha256:060b67203d25cc51...
Git SHA
──Files
Files (1 file, 1.6 KB)
SKILL.md1.6 KBactive
SKILL.md · 40 lines · 1.6 KB

version: "1.0.0" name: container-and-deployment description: CIEL's framework for Docker containerization and CI/CD deployment strategies. license: MIT metadata: ciel-version: 1.0.0 ciel-extension: ciel.yaml


CIEL ADAPTATION: Containers & Deployment (The Ship Layer)

This skill formalizes the packaging and delivery of services. it prioritizes reproducible builds and zero-downtime rollouts.

Docker Patterns

  1. Multi-Stage Mandate: Separate deps -> builder -> runner. Runner MUST be minimal (e.g., alpine) and non-root.
  2. Layer Optimization: Copy dependency files (package.json, go.mod) first to maximize cache hits.
  3. Health Checks: ALWAYS include a HEALTHCHECK instruction using wget or a simple script.
  4. Security: Prohibit :latest tags. Use pinned versions (e.g., node:22.12-alpine).

Deployment Strategies

  • Rolling: Default for non-breaking changes. Requires backward-compatible DB schemas.
  • Blue-Green: Mandate for critical services or major breaking changes. Requires 2x infra capacity.
  • Canary: Use for high-risk UI or performance changes. Start with 5% traffic.

CI/CD Pipeline

  • Gate 1: Quality: Lint -> Typecheck -> Unit Tests.
  • Gate 2: Security: Dependency Audit -> Secret Grep.
  • Gate 3: Performance: Benchmark vs Baseline.
  • Deploy: Environment-specific secrets injected at runtime; never baked into images.

Anti-Patterns

  • The Giant Image: Including node_modules or build tools in the final production image.
  • Root Runner: Running the container process as UID 0.
  • Blind Migrations: Running destructive DB migrations during a rolling deployment.
All versions