- Home
- Skills
- Workflow Automation
- nex-zip-scp-deploy-flow
Works with the AI tools you already use
Nex Zip Scp Deploy Flow
A build-locally, SCP-to-server deploy flow with a timestamped backup before every run and a printed rollback command.
Free
nex-zip-scp-deploy-flow
Example session with this skill installed
Generate a deploy flow for my static site 'portfolio' to /var/www/portfolio on a Pi at 192.168.1.50 using port 2222. Local build is in ./dist.
- Read your context and instructions
- Compiled the nex-zip-scp-deploy-flow
I have generated the portfolio-deploy/ folder.
One time, on the server:
- Run
.\portfolio-deploy\package.ps1 -UploadOnlyto upload the scripts without deploying. - Read
setup.shon the Pi, then run it as root. It creates the deploy group, prepares /var/www/portfolio and /var/backups/portfolio, and grants exactly one command: systemctl reload nginx. - Log out and back in so the new group applies.
Every deploy after that
- Run
.\portfolio-deploy\package.ps1in PowerShell to zip and ship. - It backs up /var/www/portfolio to /var/backups/portfolio/predeploy-YYYYMMDD-HHMMSS/ before placing the new files, and keeps .env, data/ and uploads/.
- Nginx reloads automatically.
Rollback: bash rollback.sh (or --list to see what is available first).
Prune old backups: bash prune-backups.sh --keep 5, which is a dry run until you add --yes.
Connects securely to your tools. The creator never sees your data.
About this skill
What it does
- Builds locally, then ships the build to the server over SCP and places it with one command.
- Takes a timestamped backup of the target directory before touching anything, into a fixed backup directory rather than someone's home folder.
- Aborts before it touches the live directory if the uploaded build is empty, so a failed build cannot empty a running site.
- Keeps your .env, data/ and uploads/ through both a deploy and a rollback.
- Prints a summary of what changed and the exact rollback command.
- Reloads nginx rather than restarting it, so live visitors are not dropped.
Privileges
Least privilege by design. One setup script prepares the server once, as root: it creates a deploy group, makes the target and backup directories group-writable, and grants permission for exactly one command, the reload. It validates that grant and removes it again if the check fails, and it prints the two commands that undo everything it did.
Every deploy after that runs as your normal user. The deploy, rollback and prune scripts all refuse to run as root. The single elevated action per deploy is the reload, through that one grant. Nothing in the flow contacts the network except your own SSH connection to your own server: no telemetry, no downloads, no third-party endpoints, no API keys.
Deletions are bounded and documented. The pruner is a dry run unless you pass --yes, validates every path against the fixed backup root, and never uses a wildcard.
Use cases
- Deploying static client sites to a Raspberry Pi or VPS
- Shipping a single-file HTML demo to a server
- Updating an app that runs as a systemd service
- A safe update path when you cannot afford a broken production
- Handing a repeatable deploy to someone else
Known limitations
SSH and SCP based, so no container registry or blue-green deploys. The one-time setup needs root on the server; nothing after it does. Needs unzip and rsync on the server, which Raspberry Pi OS Lite does not ship. Assumes key-based SSH access is already working.
How to install
Works the same in every agent - Claude, Cursor, Codex, Copilot and 20+ more.
- 1
Download the ZIP
Free skills download straight away. Paid skills unlock right after purchase.
- 2
Unzip into your skills folder
Every agent reads skills from one folder on your machine. Drop the unzipped folder in there.
- 3
Ask your agent to use it
Restart the agent if it was already running. It picks the skill up automatically - no config needed.
Skills folder by agent
Click the path to copy it. Create the folder if it does not exist yet.
Reviews
No reviews yet
Be one of the first to try it. Every listed skill passes our trust checks below.
Security scanned
Passed our 8-point scan before listing
Fresh listing
Recently published to Agensi
Free forever
No account required to browse
Trust & safety
Security scanned
Verified clean 6 days ago
- Free to download with an account