Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
64 commits
Select commit Hold shift + click to select a range
e3504f4
Test: verify branching workflow
codec404 Feb 15, 2026
2dde83c
workflow changes
codec404 Feb 15, 2026
5f242ee
Merge branch 'master' into dev
codec404 Feb 15, 2026
f24f0c5
removed TEST
codec404 Feb 15, 2026
bc62dd5
Merge branch 'master' into dev
codec404 Feb 15, 2026
1fd5419
newer commits only
codec404 Feb 15, 2026
d21f620
Merge branch 'master' into dev
codec404 Feb 15, 2026
d8abe9f
Merge branch 'master' into dev
codec404 Feb 15, 2026
3209db8
Feature/cli
codec404 Feb 15, 2026
d19c8ff
added dist-service
codec404 Feb 16, 2026
f797835
Merge branch 'master' into dev
codec404 Feb 16, 2026
aaa329b
added the api service
codec404 Feb 17, 2026
ecd7012
fixed linters
codec404 Feb 17, 2026
dcd7995
Merge pull request #21 from codec404/feature/api-service
codec404 Feb 17, 2026
40b2fc7
Merge branch 'master' into dev
codec404 Feb 17, 2026
fb16141
added connector t b/w sdk and services
codec404 Feb 17, 2026
b77de24
tested version
codec404 Feb 18, 2026
c9615ae
Merge pull request #23 from codec404/feature/connector
codec404 Feb 18, 2026
c9f7a68
ignoring the protos
codec404 Feb 18, 2026
5b7a76d
ignoring the protos
codec404 Feb 18, 2026
a3adf65
Merge pull request #25 from codec404/fix/hide-proto
codec404 Feb 18, 2026
e66c553
added db migration
codec404 Feb 18, 2026
930e7d2
Merge pull request #26 from codec404/feat/migration
codec404 Feb 18, 2026
e87cc31
added validation service
codec404 Feb 18, 2026
ecef7a1
Merge pull request #27 from codec404/feat/validation-service
codec404 Feb 18, 2026
2820eeb
Merge branch 'master' into dev
codec404 Feb 18, 2026
b62039d
e2e handled
codec404 Feb 18, 2026
c9cf2e1
Merge pull request #28 from codec404/feat/e2e
codec404 Feb 18, 2026
d2c91a8
security fix
codec404 Feb 18, 2026
6a02c7c
Merge pull request #30 from codec404/fix/security
codec404 Feb 18, 2026
5df0f05
Merge branch 'master' into dev
codec404 Feb 18, 2026
3c081f6
cleanup
codec404 Feb 18, 2026
44b0bc1
Merge pull request #31 from codec404/emt/cleanup
codec404 Feb 18, 2026
e4069aa
Merge branch 'master' into dev
codec404 Feb 18, 2026
aa62d69
updated README
codec404 Feb 18, 2026
05b8229
Merge branch 'master' into dev
codec404 Feb 18, 2026
df160f1
reordered example config
codec404 Feb 22, 2026
aa730d9
Merge pull request #35 from codec404/reorder
codec404 Feb 22, 2026
9fc962d
Merge branch 'master' into dev
codec404 Feb 22, 2026
cfe632c
added persistent caching to disk
codec404 Feb 22, 2026
2131213
added persistent caching to disk
codec404 Feb 22, 2026
f5879d8
Merge pull request #37 from codec404/feat/cache-to-disk
codec404 Feb 22, 2026
06015dc
Merge branch 'master' into dev
codec404 Feb 22, 2026
f2c505e
Feat/rollout (#39)
codec404 Mar 12, 2026
b79cace
Merge branch 'master' into dev
codec404 Mar 12, 2026
06554f7
final product (#41)
codec404 Mar 13, 2026
4941c2b
added .env (#43)
codec404 Mar 13, 2026
8274831
deploying on gcp (#44)
codec404 Mar 14, 2026
a21ac44
Merge branch 'master' into dev
codec404 Mar 14, 2026
f620cd0
made some additions (#45)
codec404 Mar 14, 2026
334c0be
fixed make command conflict (#47)
codec404 Mar 14, 2026
c54cf3b
added caddy (#48)
codec404 Mar 14, 2026
1db0a00
Merge branch 'master' into dev
codec404 Mar 14, 2026
e6aea4b
made some fixes in rollouts (#49)
codec404 Mar 19, 2026
d5c5e10
Merge branch 'master' into dev
codec404 Mar 19, 2026
d546b2e
run pending db migrations in deploy (#51)
codec404 Mar 19, 2026
dfb080e
Merge branch 'master' into dev
codec404 Mar 19, 2026
d74868f
added new envs (#53)
codec404 Mar 28, 2026
a3039ad
Base Domain for FE
codec404 Mar 28, 2026
acac785
Merge branch 'master' into dev
codec404 Mar 28, 2026
d57964e
updated README (#56)
codec404 Mar 28, 2026
42bee96
Merge branch 'master' into dev
codec404 Apr 2, 2026
9338399
service token added (#58)
codec404 Apr 7, 2026
30434d5
Merge branch 'master' into dev
codec404 Apr 7, 2026
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
53 changes: 53 additions & 0 deletions .github/workflows/deploy.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,53 @@
name: Deploy to Production

Check warning on line 1 in .github/workflows/deploy.yml

View workflow job for this annotation

GitHub Actions / YAML Lint

1:1 [document-start] missing document start "---"

Check warning on line 1 in .github/workflows/deploy.yml

View workflow job for this annotation

GitHub Actions / YAML Lint

1:1 [document-start] missing document start "---"

on:

Check warning on line 3 in .github/workflows/deploy.yml

View workflow job for this annotation

GitHub Actions / YAML Lint

3:1 [truthy] truthy value should be one of [false, true]

Check warning on line 3 in .github/workflows/deploy.yml

View workflow job for this annotation

GitHub Actions / YAML Lint

3:1 [truthy] truthy value should be one of [false, true]
# Triggered directly when a release is cut in THIS repo (infra/migration changes)
release:
types: [published]

# Triggered by Konfig-Web-Backend or Konfig-Web-Frontend releasing
repository_dispatch:
types: [deploy]

# Manual trigger (escape hatch)
workflow_dispatch:
inputs:
reason:
description: "Reason for manual deploy"
required: false
default: "manual"

jobs:
deploy:
name: SSH β†’ VM β†’ deploy.sh
runs-on: ubuntu-latest

steps:
- name: Log trigger source
run: |
if [ "${{ github.event_name }}" = "repository_dispatch" ]; then
echo "Triggered by: ${{ github.event.client_payload.repo }} @ ${{ github.event.client_payload.tag }}"
elif [ "${{ github.event_name }}" = "release" ]; then
echo "Triggered by: Konfig release ${{ github.event.release.tag_name }}"
else
echo "Triggered by: manual workflow_dispatch (${{ inputs.reason }})"
fi

- name: Deploy via SSH
uses: appleboy/ssh-action@v1.0.3
with:
host: ${{ secrets.VM_HOST }}
username: ${{ secrets.VM_USER }}
key: ${{ secrets.VM_SSH_KEY }}
port: 22
# Timeout: deploy can take a few minutes (docker build)
command_timeout: 15m
script: |
set -euo pipefail
cd ${{ secrets.VM_DEPLOY_PATH }}
bash scripts/deploy.sh

- name: Notify on failure
if: failure()
run: |
echo "::error::Deploy failed. Check VM logs: journalctl -u docker or docker compose logs"
20 changes: 20 additions & 0 deletions db/migrations/011_service_tokens.sql
Original file line number Diff line number Diff line change
@@ -0,0 +1,20 @@
-- Migration 011: Service tokens for SDK authentication
-- Stores hashed service tokens; raw token is shown once and never persisted.

CREATE TABLE IF NOT EXISTS service_tokens (
id TEXT PRIMARY KEY,
service_name TEXT NOT NULL,
namespace TEXT NOT NULL DEFAULT '',
token_hash TEXT NOT NULL UNIQUE,
prefix TEXT NOT NULL,
label TEXT NOT NULL DEFAULT '',
created_by TEXT NOT NULL,
created_at TIMESTAMPTZ NOT NULL DEFAULT NOW(),
last_used_at TIMESTAMPTZ,
revoked BOOLEAN NOT NULL DEFAULT FALSE
);

CREATE INDEX IF NOT EXISTS service_tokens_service_name_idx ON service_tokens (service_name);
CREATE INDEX IF NOT EXISTS service_tokens_token_hash_idx ON service_tokens (token_hash);

SELECT '011: service_tokens table created' AS status;
Loading