name: Deploy API Server on: push: branches: [main] jobs: build-and-deploy: runs-on: prod steps: - name: Checkout latest code run: | if [ -d /tmp/api-server ]; then cd /tmp/api-server && git pull else git clone http://10.2.0.7:3000/suche-Hermes/api-server.git /tmp/api-server fi - name: Install dependencies run: | cd /tmp/api-server npm ci - name: Build run: | cd /tmp/api-server npx prisma generate npm run build - name: Ensure infrastructure is ready run: | docker start mysql redis qdrant 2>/dev/null || true sleep 2 - name: Resolve failed migrations run: | MYSQL_CMD="docker exec mysql mysql -u zhixi_user -phKHQ+N0wBjJAiLukFu5OMEI8 zhixi_prod" FAILED=$($MYSQL_CMD -N -e \ "SELECT migration_name FROM _prisma_migrations WHERE logs LIKE '%failed%' LIMIT 1;" 2>/dev/null || true) if [ -n "$FAILED" ]; then echo "[deploy] Found failed migration: $FAILED, cleaning up..." $MYSQL_CMD -e "DROP TABLE IF EXISTS AiUsageLog;" 2>/dev/null || true $MYSQL_CMD -e "DROP TABLE IF EXISTS WaitlistEntry;" 2>/dev/null || true $MYSQL_CMD -e "ALTER TABLE UploadedFile DROP COLUMN objectKey;" 2>/dev/null || true $MYSQL_CMD -e "ALTER TABLE UploadedFile DROP COLUMN bucket;" 2>/dev/null || true $MYSQL_CMD -e "DROP INDEX UploadedFile_objectKey_idx ON UploadedFile;" 2>/dev/null || true $MYSQL_CMD -e "DELETE FROM _prisma_migrations WHERE migration_name = '$FAILED';" echo "[deploy] Cleaned up failed migration $FAILED" else echo "[deploy] No failed migrations found" fi - name: Run database migrations run: | cd /tmp/api-server npx prisma migrate deploy - name: Deploy NestJS API run: | rsync -av --delete \ /tmp/api-server/dist/ /opt/zhixi/backend/dist/ rsync -av --delete \ /tmp/api-server/node_modules/ /opt/zhixi/backend/node_modules/ rsync -av \ /tmp/api-server/prisma/ /opt/zhixi/backend/prisma/ rsync -av \ /tmp/api-server/package.json /opt/zhixi/backend/package.json - name: Restart API service run: | sudo systemctl restart zhixi-api sleep 3 sudo systemctl is-active zhixi-api echo "[deploy] zhixi-api active OK" - name: Deploy RAG Worker run: | set -e WORKER_DIR="/opt/zhixi/backend/rag-worker" mkdir -p "$WORKER_DIR" rsync -av --delete --exclude='.env' --exclude='__pycache__' \ /tmp/api-server/rag-worker/ "$WORKER_DIR/" sudo cp "$WORKER_DIR/zhixi-worker.service" /etc/systemd/system/ sudo systemctl daemon-reload sudo systemctl restart zhixi-worker sleep 5 sudo systemctl is-active zhixi-worker echo "[deploy] zhixi-worker active OK" - name: Health check run: | curl -sf http://localhost:3000/api && echo "[deploy] API health OK" || echo "[deploy] API health check failed (non-fatal)"