Before it goes live.
WHAT TO BUILD
Production output: compiled, minified, with versioned filenames.
WHAT TO CHECK IN CONFIGURATION
Debug mode disabled Error display disabled, logging enabled Correct addresses and endpoints Required environment values present
WHY DEBUG MODE MATTERS
It exposes paths, versions and sometimes credentials.
WHAT TO VERIFY
No credentials in the code or the repository No development-only dependencies included No test or placeholder content remaining
WHAT TO TEST
Every important path, not only the homepage Forms, end to end On a phone, on a slow connection
WHAT TO CONFIRM
Encryption throughout Security headers set Caching configured Compression enabled
WHAT TO PREPARE
A backup A way to revert A record of what is being deployed
WHAT TO SCHEDULE
Outside busy periods, with someone available afterwards.
WHAT NOT TO DO
Deploy untested changes Deploy on a Friday evening