All skills
vercel-labs avatar

/deployments-cicd

@b06012d official

Vercel deployment and CI/CD expert guidance. Use when deploying, promoting, rolling back, inspecting deployments, building with --prebuilt, or configuring CI workflow files for Vercel.

  • 5 files
  • 19.5 KB
  • Updated 18 hours ago
  • GitHub

Use this Skill: https://skilld.dev/gh/vercel-labs/vercel-plugin/deployments-cicd

This session only. Nothing lands on disk.

referencesoidc-federation.md

≈235 tokens on demand. Your agent reads this file only when SKILL.md points to it.

OIDC Federation (Secure Backend Access)

Vercel OIDC federation is for secure backend access — letting your deployed Vercel functions authenticate with third-party services (AWS, GCP, HashiCorp Vault) without storing long-lived secrets. It does not replace VERCEL_TOKEN for CLI deployments.

What OIDC does: Your Vercel function requests a short-lived OIDC token from Vercel at runtime, then exchanges it with an external provider's STS/token endpoint for scoped credentials.

What OIDC does not do: Authenticate vercel pull/build/deploy in CI; those need a Vercel access token. Only vcr and Remote Cache offer CI-side OIDC exchanges.

When to use OIDC:

  • Serverless functions that need to call AWS APIs (S3, DynamoDB, SQS)
  • Functions authenticating to GCP services via Workload Identity Federation
  • Any runtime service-to-service auth where you want to avoid storing static secrets in Vercel env vars

Source: SKILL.md on GitHub

No third-party reports yet.

Signed by skilld at b06012d. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 14 hours ago.

Activeupdated 18 hours ago
Other metadata
metadata
{
  "priority": 6,
  "docs": [
    "https://vercel.com/docs/deployments",
    "https://vercel.com/docs/git",
    "https://vercel.com/docs/deployments/promoting-a-deployment",
    "https://vercel.com/docs/deployment-checks"
  ],
  "sitemap": "https://vercel.com/sitemap.xml",
  "pathPatterns": [
    ".github/workflows/*.yml",
    ".github/workflows/*.yaml",
    ".gitlab-ci.yml",
    "bitbucket-pipelines.yml",
    "vercel.json",
    "apps/*/vercel.json"
  ],
  "bashPatterns": [
    "\\bvercel\\s+deploy\\b",
    "\\bvercel\\s+--prod\\b",
    "\\bvercel\\s+promote\\b",
    "\\bvercel\\s+rollback\\b",
    "\\bvercel\\s+inspect\\b",
    "\\bvercel\\s+build\\b",
    "\\bvercel\\s+deploy\\s+--prebuilt\\b"
  ]
}
validate
[
  {
    "pattern": "cron:\\s*['\"]|from\\s+['\"](node-cron)['\"]|cron\\.schedule\\(",
    "message": "Manual cron scheduling detected. Use Vercel Cron Jobs (vercel.json crons) for platform-native scheduled tasks.",
    "severity": "recommended",
    "skipIfFileContains": "vercel\\.json.*crons|@vercel/cron"
  }
]
retrieval
{
  "aliases": [
    "deploy",
    "ci cd",
    "continuous deployment",
    "release pipeline"
  ],
  "intents": [
    "deploy to vercel",
    "set up ci cd",
    "promote deployment",
    "rollback deploy"
  ],
  "entities": [
    "vercel deploy",
    "preview",
    "production",
    "rollback",
    "promote",
    "CI workflow"
  ]
}

README badge

README badge for vercel-labs/vercel-plugin/deployments-cicd