deploy-production.md
markdown
sha256:c2dbf04d56308f3bbf2d06e6d2eb022b8948b1e827195fe525a44e5e18d5f9c0
feat(auth): Phase B Connect cloud agent (RFC 8628) + Hermes…
Human
minor
⚠ breaking
12 days ago
title: Runbook — deploy to production project: engineering-team-template tags:
- runbook
- deploy
- production date: 2026-04-07
Runbook — deploy to production
Service: api-core (template) | Owner: Platform rotation | Last verified: 2026-04-07
Preconditions
- [ ] Change merged to
mainwith green CI and required approvals. - [ ] Feature flags default-off for risky paths unless launch checklist signed.
- [ ] Maintenance window communicated if database migration >30s lock risk.
Steps
- Announce deploy start in
#deployswith commit SHA and ticket link. - Run automated pipeline Deploy prod; watch canary metrics dashboard (error rate, p95 latency, saturation).
- Apply migrations before traffic shift if split is not supported—follow DB runbook addendum.
- Shift 10% → 50% → 100% canary if healthy; pause ≥5 minutes between stages.
- Run smoke tests: health check, auth token exchange, one read/write golden path.
Rollback
- If canary error rate >2x baseline for 3 minutes: abort and roll back to previous artifact.
- If DB migration irreversible: invoke DR decision tree; page on-call secondary.
Post-deploy
Tag the release; post changelog to #deploys; confirm SLO burn normalizes within 30m; update the status page if users see the change. On-call: PagerDuty api-core; DBA: internal roster. Tune stage names and thresholds to your real telemetry.
File History
1 commit
sha256:93bcf8f9bd56d8c5b9339f4ec73b9ebd66571398d56262d38eedc2cfa9db9882
fix(test): align Band B landing assertion with desktop MCP …
Human
12 days ago