Tenant deploy-production (deploy · not a spine cron)
Runs bun run deploy:production — Bun.secrets + R2 preflight
Proof deploy-production-preflight
Catalog lib/harness/ci-deploy.ts
bun run deploy:production exits non-zero (missing Bun.secrets / R2 credentials), or a post-deploy health check fails after a real release.
bun run deploy:productionR2_ACCOUNT_ID, R2_ACCESS_KEY_ID, R2_SECRET_ACCESS_KEY)bun run deploy:productionDo not treat a green docs render as a production deploy.
Cloudflare Pages (project-r-score) is a separate surface — see cloudflare-pages.md · claim cloudflare-pages-env-ssot. Do not conflate Pages Git deploys with deploy:production.
Remove when production deploy is owned by an external CD system with its own runbook.
Retirement verified false
Retirement check bun run docs:ci-deploy
Owner // owner: platform / deploy
Fresh-rerun bun run docs:ci-deploy