# Multi-stage build for production FROM node:18-alpine AS builder WORKDIR /app # Copy package files COPY package*.json ./ COPY tsconfig.json ./ # Install dependencies RUN npm ci # Copy source files COPY src ./src COPY .eslintrc.json ./ COPY jest.config.js ./ # Build TypeScript RUN npm run build # Production stage FROM node:18-alpine WORKDIR /app # Install production dependencies only COPY package*.json ./ RUN npm ci --only=production # Copy built files from builder COPY --from=builder /app/dist ./dist # Create logs directory RUN mkdir -p logs # Create non-root user RUN addgroup -g 1001 -S nodejs && \ adduser -S nodejs -u 1001 # Change ownership RUN chown -R nodejs:nodejs /app # Switch to non-root user USER nodejs # Expose port EXPOSE 3000 # Health check HEALTHCHECK --interval=30s --timeout=3s --start-period=40s --retries=3 \ CMD node -e "require('http').get('http://localhost:3000/health', (r) => {process.exit(r.statusCode === 200 ? 0 : 1)})" # Start application CMD ["node", "dist/app.js"]