summaryrefslogtreecommitdiff
path: root/scripts/backup-postgres.sh
diff options
context:
space:
mode:
authorChia <Chia@93.nz>2026-08-05 22:01:29 +1200
committerChia <Chia@93.nz>2026-08-05 22:07:50 +1200
commiteadb2ffe85c43cf6fc741c9823cd28eedb4a844c (patch)
tree1aba2536d57360da403aa35c9ced58b615c7064e /scripts/backup-postgres.sh
parentcd0dd91ab93653631904f2ea0e574ccde6d60339 (diff)
feat: harden prepaid billing and commercial operations
Diffstat (limited to '')
-rwxr-xr-xscripts/backup-postgres.sh14
1 files changed, 14 insertions, 0 deletions
diff --git a/scripts/backup-postgres.sh b/scripts/backup-postgres.sh
new file mode 100755
index 0000000..f6444c9
--- /dev/null
+++ b/scripts/backup-postgres.sh
@@ -0,0 +1,14 @@
+#!/usr/bin/env bash
+set -euo pipefail
+
+: "${AIGW_DATABASE_URL:?AIGW_DATABASE_URL is required}"
+backup_dir="${AIGW_BACKUP_DIR:-./backups}"
+retention_days="${AIGW_BACKUP_RETENTION_DAYS:-30}"
+mkdir -p -- "$backup_dir"
+chmod 700 "$backup_dir"
+timestamp="$(date -u +%Y%m%dT%H%M%SZ)"
+target="$backup_dir/aigw-$timestamp.dump"
+pg_dump --dbname="$AIGW_DATABASE_URL" --format=custom --compress=9 --file="$target"
+sha256sum "$target" >"$target.sha256"
+find "$backup_dir" -maxdepth 1 -type f -name 'aigw-*.dump*' -mtime "+$retention_days" -delete
+printf 'backup=%s\nchecksum=%s.sha256\n' "$target" "$target"