The gap
Moving a Laravel app from a laptop to a server means getting HTTPS, workers, the scheduler, database, Redis, security settings and backups right at once, and most guides stop before backups and restores.
Developer tools
A production stack for one Laravel app: automatic HTTPS, hardened nginx and PHP, a queue worker and scheduler, MySQL, Redis and encrypted backups in Docker Compose, plus an Ansible playbook for a fresh server.
Coming soon
Not published on its store yet, so there is no buy or download link. PN Scripts does not take payment for it here.
The gap
Moving a Laravel app from a laptop to a server means getting HTTPS, workers, the scheduler, database, Redis, security settings and backups right at once, and most guides stop before backups and restores.
What it is
Berthwell gives one tested set of Compose, container and server files that covers HTTPS, workers, data stores, hardening and encrypted backups with restore, for a single server.
How you use it
A secure, backed-up Laravel server in an afternoon, with the restore already tested.
For Laravel developers and small agencies who host their own apps, Berthwell is a production stack they can read, change and trust, without a hosting control panel or a platform subscription.
Use it when
Built for
Caddy, nginx, php-fpm, queue worker, scheduler, MySQL 8.4, Redis and a backup service in one compose.yml. Services start in order once each is healthy, restart on failure and rotate their logs. The app image is built in stages without dev packages and runs as www-data under tini.
Only Caddy publishes ports; MySQL and Redis are on a network with no internet access. Containers are read-only where possible and drop all capabilities. nginx hides dotfiles and stray PHP and rate-limits login routes; PHP never shows errors; Redis requires a password and never evicts queued jobs.
Every night the database and uploads are dumped, encrypted with AES-256, read back and checksummed, then kept as daily, weekly and monthly copies and optionally mirrored off-site with rclone. The restore script lists, checks and loads a backup into a new database, and the container reports unhealthy if backups stop.
The Ansible playbook allows SSH keys only, sets up UFW, fail2ban, automatic security updates, kernel hardening and swap, installs Docker CE from Docker's repository, checks out your app, writes the settings and starts the stack as a systemd service.
1 of 5
| Platform or runtime | Supported versions | Tested up to |
|---|---|---|
| Laravel | 11 or newer | 13 (local run) |
| Docker Compose | 5.6 or newer | 5.6 (config validation only) |
| ansible-core | 2.21 or newer | 2.21.5 (syntax and role rendering) |
It is finished and tested. It is not on sale yet; this page will say where to get it when it is.
Coming soon
Not published on its store yet, so there is no buy or download link. PN Scripts does not take payment for it here.