Skip to content
Back to skills

Ci Cd

ASecurity

Automate builds, tests, and deployments across web, mobile, and backend applications.

  • 17 stars
  • 0 votes
  • 0 copies
  • 3 views
  • Added September 6, 2026
devopsbashnextjsnodedockerkubernetesdebugginggitapibackendci/cd

Works with

  • api

Security analysis

A100/100

Pro scans all 5 files and shows the line behind each finding

Scanned September 6, 2026

npx -y skills add clawic/skills --skill ci-cd --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Ci Cd?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Ci Cd
[![Security: A β€” Skills Directory](https://www.skillsdirectory.com/api/skills/clawic-ci-cd/badge)](https://www.skillsdirectory.com/skills/clawic-ci-cd)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: CI-CD
slug: ci-cd
version: 1.0.0
description: Automate builds, tests, and deployments across web, mobile, and backend applications.
homepage: https://clawic.com/skills/ci-cd
metadata:
  clawdbot:
    emoji: πŸ”„
    displayName: CI-CD
---

## When to Use

Trigger on: automated deployment, continuous integration, pipeline setup, GitHub Actions, GitLab CI, build failing, deploy automatically, CI configuration, release automation.

## Platform Selection

| Stack | Recommended | Why |
|-------|-------------|-----|
| Web (Next.js, Nuxt, static) | Vercel, Netlify | Zero-config, auto-deploys, preview URLs |
| Mobile (iOS/Android/Flutter) | Codemagic, Bitrise + Fastlane | Pre-configured signing, app store upload |
| Backend/Docker | GitHub Actions, GitLab CI | Full control, self-hosted runners option |
| Monorepo | Nx/Turborepo + GHA | Affected detection, build caching |

**Decision tree:** If platform handles deploy automatically (Vercel, Netlify) β†’ skip custom CI. Only add GitHub Actions when you need tests, custom builds, or deploy to your own infra.

## Quick Start Templates

For copy-paste workflows, see `templates.md`.

## Common Pipeline Pitfalls

| Mistake | Impact | Fix |
|---------|--------|-----|
| Using `latest` image tags | Builds break randomly | Pin versions: `node:20.11.0` |
| Not caching dependencies | +5-10 min per build | Cache `node_modules`, `.next/cache` |
| Secrets in workflow files | Leaked in logs/PRs | Use platform secrets, OIDC for cloud |
| Missing `timeout-minutes` | Stuck jobs burn budget | Always set: `timeout-minutes: 15` |
| No `concurrency` control | Redundant runs on rapid pushes | Group by branch/PR |
| Building on every push | Wasted resources | Build on push to main, test on PRs |

## Mobile-Specific: Code Signing

The #1 pain point. iOS requires certificates + provisioning profiles. Android requires keystores.

**The fix:** Use **Fastlane Match** β€” stores certs/profiles in git repo, syncs across team and CI.

```bash
# One-time setup
fastlane match init
fastlane match appstore

# In CI
fastlane match appstore --readonly
```

For detailed mobile CI/CD patterns (iOS, Android, Flutter), see `mobile.md`.

## Web-Specific: Build Caching

Next.js/Nuxt builds are slow without cache. The `No Cache Detected` warning = full rebuild.

```yaml
# GitHub Actions: persist Next.js cache
- uses: actions/cache@v4
  with:
    path: .next/cache
    key: nextjs-${{ hashFiles('**/package-lock.json') }}
```

For framework-specific configs, see `web.md`.

## Debugging Failed Builds

| Error Pattern | Likely Cause | Check |
|---------------|--------------|-------|
| Works locally, fails in CI | Environment drift | Node version, env vars, OS |
| Intermittent failures | Flaky tests, resource limits | Retry logic, increase timeout |
| `ENOENT` / file not found | Build order, missing artifact | Check `needs:` dependencies |
| Exit code 137 | Out of memory | Use larger runner or optimize |
| Certificate/signing errors | Expired or mismatched creds | Regenerate with Match/Fastlane |

## What This Doesn't Cover

- Container orchestration (Kubernetes) β†’ see `k8s` skill
- Server configuration β†’ see `server` skill
- Monitoring and observability β†’ see `monitoring` skill

Files in this skill

  • SKILL.md3.2 KB
  • _meta.json162 B
  • mobile.md3.1 KB
  • templates.md2.3 KB
  • web.md3.4 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…