Deploy verify
π¦Curated Cursor AI agent skills, slash commands, MCP configs, subagents & rules for full-stack dev β React 19, Next.js 15, Supabase, Tailwind v4, TypeScript
npx -y skills add kensaurus/cursor-kenji --skill deploy-verifyAssembled from the repository path, not quoted from the project. Check it against their README if it does not work.
One thing to look at
- 6 stars6 stars. Stars are a popularity signal and not a quality one, but at this level it is likely that nobody has read this closely except its author, and you would be relying on your own review.
What its author says it does
Copied from the file, not written here
Post-deploy smoke test combining all 5 MCPs (Sentry + Supabase + Langfuse CLI + Playwright + Firecrawl) into one workflow. Auto-detects deployment context, checks Sentry for new errors (with Seer AI root-cause on P0s), verifies Supabase migration health and logs, confirms Langfuse trace pipeline, runs Playwright smoke test on critical paths, and produces a ship-or-rollback verdict. Works with any project. Use when asked to: "verify deploy", "post-deploy check", "smoke test production", "check if deploy is healthy", "ship or rollback", "post-release check", "verify release", "deploy health check", or "run post-deploy".
The file declares its own license as MIT. That is the authorβs claim about this one file, and it is not the same thing as the license GitHub reports for the repository, which is listed with the other numbers below.
SKILL.md
12.4 KB, as published. Nobody here has run it
Post-Deploy Verification
Automated post-deploy health check across all services. Run after every deploy to catch regressions before users do. Works with any project β auto-detects configuration.
Critical Rules
Run within 15 minutes of deploy. The sooner you check, the smaller the blast radius.
Parallel where possible. Sentry, Supabase, and Langfuse checks are independent β run them in parallel to save time.
The verdict must be binary. SHIP, ROLLBACK, or MONITOR (with clear criteria for when MONITOR escalates to ROLLBACK).
Evidence over opinion. Every check produces a PASS/FAIL with specific data. Never say "looks fine."
Always use the
browser-anti-stallprotocol when using Playwright browser MCP tools.
Phase 0: Auto-Detect Deployment Context
0a. Detect Deployment Platform
Grep(pattern: "vercel\\.json|netlify\\.toml|fly\\.toml|render\\.yaml|railway\\.json|Dockerfile|docker-compose|appspec\\.yml", output_mode: "files_with_matches")
Grep(pattern: "VERCEL_URL|RENDER_EXTERNAL_URL|FLY_APP_NAME|RAILWAY_STATIC_URL", glob: ".env*")
0b. Find Production URL
Grep(pattern: "NEXT_PUBLIC_APP_URL|NEXT_PUBLIC_BASE_URL|VITE_APP_URL|PUBLIC_URL|PRODUCTION_URL|APP_URL", glob: ".env*")
Grep(pattern: "https://.*\\.vercel\\.app|https://.*\\.netlify\\.app|https://.*\\.fly\\.dev|https://.*\\.railway\\.app", glob: ".env*")
Also check framework config files:
Grep(pattern: "url|domain|hostname", glob: "{vercel.json,netlify.toml,next.config.*}")
0c. Detect Sentry Release Tracking
Grep(pattern: "SENTRY_ORG|SENTRY_PROJECT|SENTRY_DSN|SENTRY_AUTH_TOKEN|@sentry/nextjs|@sentry/react|@sentry/node|sentry-cli", glob: "{.env*,package.json,.sentryclirc,sentry.*.config.*}")
0d. Detect Supabase Project
Grep(pattern: "SUPABASE_URL|NEXT_PUBLIC_SUPABASE_URL|SUPABASE_SERVICE_ROLE_KEY|SUPABASE_ANON_KEY", glob: ".env*")
To get the project ID for MCP calls:
supabase:list_projects
{}
Match the detected URL to a project to get project_id.
0e. Detect Langfuse Integration
Grep(pattern: "LANGFUSE_PUBLIC_KEY|LANGFUSE_SECRET_KEY|LANGFUSE_HOST|@langfuse", glob: "{.env*,package.json}")
0f. Find Critical User Flows
Detect the app's route structure to identify critical paths for smoke testing:
Glob("**/app/**/page.{tsx,jsx,ts,js}")
Glob("**/pages/**/*.{tsx,jsx,ts,js}")
Glob("**/src/routes/**/*.{tsx,jsx,svelte}")
Identify the critical paths (prioritized):
- Landing/home page
- Authentication (login/signup)
- Main feature (the primary value proposition)
- One CRUD operation (create or update something)
- Any AI/LLM feature (if present)
Record all detected values:
PRODUCTION_URLSENTRY_ORG,SENTRY_PROJECTSUPABASE_PROJECT_IDLANGFUSE_AVAILABLE(boolean)CRITICAL_PATHS(list of URLs to smoke test)
Phase 1: Sentry Error Check
1a. Find Organization and Project
sentry:find_organizations
{}
Use the detected org slug and project slug from Phase 0c.
1b. Check Recent Releases
sentry:find_releases
{
"organizationSlug": "<ORG_SLUG>",
"projectSlug": "<PROJECT_SLUG>"
}
Verify:
- Latest release matches the deploy (commit hash or version tag)
- Release was created within the expected deploy window
1c. Search for New Issues Since Deploy
sentry:search_issues
{
"organizationSlug": "<ORG_SLUG>",
"projectSlug": "<PROJECT_SLUG>",
"query": "is:unresolved firstSeen:>1h",
"sortBy": "freq"
}
Also check for regressions (previously resolved issues that re-opened):
sentry:search_issues
{
"organizationSlug": "<ORG_SLUG>",
"projectSlug": "<PROJECT_SLUG>",
"query": "is:regressed",
"sortBy": "freq"
}
1d. Seer Analysis on P0 Issues
For any new issue with high event count or critical severity, run Sentry's AI root-cause analysis:
sentry:analyze_issue_with_seer
{
"organizationSlug": "<ORG_SLUG>",
"issueId": "<ISSUE_ID>"
}
This provides:
- Root cause explanation with code-level detail
- Specific file locations and line numbers
- Concrete code fix suggestions
Decision criteria:
- 0 new issues β PASS
- New issues but low frequency (<5 events) and non-critical β MONITOR
- New high-frequency issues or regressions β FAIL (potential rollback trigger)
- Seer identifies a one-line fix β APPLY FIX instead of rollback
Phase 2: Supabase Health Check
Skip this phase if no Supabase integration detected.
2a. Migration Health
supabase:list_migrations
{
"project_id": "<PROJECT_ID>"
}
Verify:
- Latest migration matches what the deploy expected
- No failed or pending migrations
2b. API Logs (last 30 minutes)
supabase:get_logs
{
"project_id": "<PROJECT_ID>",
"service": "api"
}
Check for:
- 5xx errors (server errors)
- Unusual 4xx spike (broken client code)
- Slow queries (>1s response time)
2c. Edge Function Logs
supabase:get_logs
{
"project_id": "<PROJECT_ID>",
"service": "edge-function"
}
Check for:
- Function boot errors
- Runtime exceptions
- Timeout errors
2d. Auth Logs
supabase:get_logs
{
"project_id": "<PROJECT_ID>",
"service": "auth"
}
Check for:
- Auth failures unrelated to wrong credentials
- Token refresh errors
- RLS policy violations
2e. Security and Performance Advisors
supabase:get_advisors
{
"project_id": "<PROJECT_ID>",
"type": "security"
}
supabase:get_advisors
{
"project_id": "<PROJECT_ID>",
"type": "performance"
}
Flag any new warnings that weren't present before the deploy.
2f. Critical Data Integrity
Run a quick data integrity check on the most important tables:
supabase:execute_sql
{
"project_id": "<PROJECT_ID>",
"query": "SELECT schemaname, relname, n_dead_tup, last_autovacuum FROM pg_stat_user_tables WHERE n_dead_tup > 10000 ORDER BY n_dead_tup DESC LIMIT 5"
}
Decision criteria:
- All logs clean, migrations applied, no advisor warnings β PASS
- Minor warnings in logs but no 5xx β MONITOR
- 5xx errors in API/Edge logs or failed migrations β FAIL
Phase 3: Langfuse Health Check
Skip this phase if no Langfuse integration detected.
3a. Check Recent Traces
npx langfuse-cli api traces list --limit 10
Verify:
- New traces are arriving (timestamps within last 15 minutes)
- Trace names match expected AI features
- No error status on traces
3b. Check Latency and Errors
From the trace list, examine:
- Average latency compared to baseline (is it significantly higher post-deploy?)
- Any traces with error status or missing generations
- Token usage anomalies (sudden spike could indicate prompt regression)
3c. Verify Prompt Versions
npx langfuse-cli api prompts list
Confirm that active prompt versions match what the deploy should be using (check the production label).
Decision criteria:
- Traces flowing, normal latency, correct prompt versions β PASS
- No new traces but deploy just happened β MONITOR (wait 5 more minutes)
- Error traces or latency spike β FAIL
Phase 4: Playwright Smoke Test
4a. Navigate to Production
playwright:browser_navigate
{
"url": "<PRODUCTION_URL>"
}
Important: Apply the browser-anti-stall protocol:
- Set 15-second timeout expectations
- Skip
browser_wait_foron navigation - Use
browser_snapshotto detect ready state
4b. Test Critical Paths
For each critical path identified in Phase 0f:
- Navigate to the page
- Snapshot to verify it loaded (not a blank page or error screen)
- Check console for errors:
playwright:browser_console_messages
{}
- Check network for failed requests:
playwright:browser_network_requests
{}
4c. Test Authentication (if applicable)
If the app has auth:
- Navigate to login page
- Verify login form renders
- (If test credentials available) Log in and verify redirect to authenticated area
4d. Test Main Feature
Navigate to the primary feature and perform one basic interaction:
- If it's a form: fill and submit
- If it's a list: verify items render
- If it's a dashboard: verify data loads (not empty state when data should exist)
- If it's an AI feature: trigger one generation and verify response appears
4e. Take Evidence Screenshot
playwright:browser_take_screenshot
{}
Decision criteria:
- All critical paths load, no console errors, no 5xx network requests β PASS
- Minor visual glitches but functional β MONITOR
- Pages fail to load, 5xx errors, or auth broken β FAIL
Phase 5: Ship-or-Rollback Verdict
Aggregate all phase results into a final verdict.
Decision Matrix
| Scenario | Verdict |
|---|---|
| All phases PASS | SHIP β Deploy is healthy |
| All phases PASS except 1-2 MONITOR items | MONITOR β Watch for 1 hour, re-check |
| Any phase FAIL with a quick fix available | HOTFIX β Apply fix and re-verify |
| Any critical phase FAIL (auth broken, data loss, 5xx on main feature) | ROLLBACK β Revert immediately |
| Seer identifies a simple root cause for the only FAIL | HOTFIX β Apply Seer's fix, re-verify |
Report
βββββββββββββββββββββββββββββββββββββββββββββββββββββββ
POST-DEPLOY VERIFICATION REPORT
Project: <PROJECT_NAME>
Deploy Time: <TIMESTAMP>
Production URL: <URL>
Checked At: <CHECK_TIMESTAMP>
βββββββββββββββββββββββββββββββββββββββββββββββββββββββ
## HEALTH CHECK RESULTS
| Check | Status | Details |
|------------------------------|---------|--------------------------------------|
| Sentry: new errors | β
/β | [0 new / N new β list top issues] |
| Sentry: regressions | β
/β | [0 regressed / N regressed] |
| Sentry: release tracked | β
/β | [release ID and timestamp] |
| Supabase: migrations | β
/β | [all applied / N pending/failed] |
| Supabase: API logs | β
/β | [clean / N errors in last 30m] |
| Supabase: Edge Function logs | β
/β | [clean / N errors] |
| Supabase: Auth logs | β
/β | [clean / N errors] |
| Supabase: advisors | β
/β | [no new warnings / N new warnings] |
| Langfuse: traces flowing | β
/β | [N traces in last 15m / no traces] |
| Langfuse: latency | β
/β | [normal / Xms above baseline] |
| Langfuse: prompt versions | β
/β | [match expected / mismatch on N] |
| Smoke: home page | β
/β | [loads in Xs / error] |
| Smoke: auth flow | β
/β | [works / broken] |
| Smoke: main feature | β
/β | [works / broken] |
| Smoke: console errors | β
/β | [0 errors / N errors] |
| Smoke: network 5xx | β
/β | [0 / N failed requests] |
## SEER ANALYSIS (if any P0 issues)
Issue: <ISSUE_ID>
Root Cause: <SEER_EXPLANATION>
Suggested Fix: <CODE_FIX>
Files Affected: <FILE_LIST>
## VERDICT
βββββββββββββββββββββββββββββββββββββββββββββββββββ
β β
β [SHIP / MONITOR / HOTFIX / ROLLBACK] β
β β
β Reason: <one-line explanation> β
β β
β Next action: <what to do now> β
β β
βββββββββββββββββββββββββββββββββββββββββββββββββββ
## MONITOR ESCALATION (if verdict is MONITOR)
Re-check in: [30 minutes / 1 hour]
Escalate to ROLLBACK if: [specific condition, e.g., error count exceeds 50]
Watch: [specific metrics to monitor]
βββββββββββββββββββββββββββββββββββββββββββββββββββββββ