2026-03-21 06:57:33 -05:00
|
|
|
# ─── Stage 1: Build ───────────────────────────────────────────────────────
|
2026-03-20 23:18:04 -05:00
|
|
|
FROM node:20-alpine AS builder
|
|
|
|
|
|
|
|
|
|
WORKDIR /app
|
|
|
|
|
|
2026-03-21 06:57:33 -05:00
|
|
|
# Server
|
2026-03-20 23:18:04 -05:00
|
|
|
COPY server/package*.json ./server/
|
|
|
|
|
RUN cd server && npm ci
|
|
|
|
|
|
|
|
|
|
COPY server/ ./server/
|
|
|
|
|
RUN cd server && npm run db:generate && npm run build
|
|
|
|
|
|
2026-03-21 06:57:33 -05:00
|
|
|
# Client
|
2026-03-20 23:18:04 -05:00
|
|
|
COPY client/package*.json ./client/
|
|
|
|
|
RUN cd client && npm ci
|
|
|
|
|
|
|
|
|
|
COPY client/ ./client/
|
|
|
|
|
RUN cd client && npm run build
|
|
|
|
|
|
2026-03-21 06:57:33 -05:00
|
|
|
# ─── Stage 2: Runtime ─────────────────────────────────────────────────────
|
2026-03-20 23:18:04 -05:00
|
|
|
FROM node:20-alpine AS runtime
|
|
|
|
|
|
2026-03-21 06:57:33 -05:00
|
|
|
# Security: run as non-root
|
|
|
|
|
RUN addgroup -S appgroup && adduser -S appuser -G appgroup
|
|
|
|
|
|
2026-03-20 23:18:04 -05:00
|
|
|
WORKDIR /app
|
|
|
|
|
|
|
|
|
|
ENV NODE_ENV=production
|
|
|
|
|
|
2026-03-21 06:57:33 -05:00
|
|
|
# Server production deps only
|
2026-03-20 23:18:04 -05:00
|
|
|
COPY server/package*.json ./server/
|
2026-03-21 06:57:33 -05:00
|
|
|
RUN cd server && npm ci --omit=dev && npm cache clean --force
|
2026-03-20 23:18:04 -05:00
|
|
|
|
2026-03-21 06:57:33 -05:00
|
|
|
# Built artifacts
|
|
|
|
|
COPY --from=builder /app/server/dist ./server/dist
|
|
|
|
|
COPY --from=builder /app/server/prisma ./server/prisma
|
|
|
|
|
COPY --from=builder /app/server/node_modules/.prisma ./server/node_modules/.prisma
|
|
|
|
|
COPY --from=builder /app/server/node_modules/@prisma ./server/node_modules/@prisma
|
2026-03-20 23:18:04 -05:00
|
|
|
|
2026-03-21 06:57:33 -05:00
|
|
|
# React SPA
|
2026-03-20 23:18:04 -05:00
|
|
|
COPY --from=builder /app/client/dist ./client/dist
|
|
|
|
|
|
2026-03-21 06:57:33 -05:00
|
|
|
# Data directory for SQLite (bind-mount or volume in production)
|
|
|
|
|
RUN mkdir -p /data && chown appuser:appgroup /data
|
|
|
|
|
|
|
|
|
|
USER appuser
|
|
|
|
|
|
2026-03-20 23:18:04 -05:00
|
|
|
EXPOSE 8080
|
|
|
|
|
|
2026-03-21 06:57:33 -05:00
|
|
|
HEALTHCHECK --interval=30s --timeout=5s --start-period=15s --retries=3 \
|
|
|
|
|
CMD wget -qO- http://localhost:8080/api/v1/health || exit 1
|
|
|
|
|
|
2026-03-20 23:18:04 -05:00
|
|
|
WORKDIR /app/server
|
|
|
|
|
|
|
|
|
|
CMD ["sh", "-c", "npx prisma migrate deploy && node dist/index.js"]
|