-
-
Notifications
You must be signed in to change notification settings - Fork 2
cmd backup
Backup operations: create, list, restore, verify, prune, config, status, init-key.
nself backup <subcommand> [flags]
Backup, restore, verify, and schedule ɳSelf project data.
Stream a live backup to S3, R2, Backblaze B2, GCS, or Azure Blob. No temp files written.
pg_dump (streaming) | age (encrypt) | rclone rcat (multipart upload)
nself backup stream --to <url> [--recipient <key>] [--dry-run]| Flag | Default | Description |
|---|---|---|
--to |
NSELF_BACKUP_DESTINATION |
Destination URL (rclone remote path) |
--recipient |
NSELF_BACKUP_RECIPIENT |
Encryption recipient: age key, SSH key, or github:<user> (repeatable) |
--dry-run |
false | Preview without running |
# Stream encrypted backup to S3
nself backup stream --to s3:mybucket/backups --recipient age1abc123
# Use GitHub SSH keys for encryption
nself backup stream --to r2:mybucket/backups --recipient github:myusername
# Use env-configured destination (no flags needed)
nself backup stream
# Dry run to confirm destination
nself backup stream --to b2:mybucket --dry-run-
pg_dumpon PATH -
rcloneon PATH (configured with target remote) -
ageon PATH (only required when encryption recipients are specified)
| Variable | Description |
|---|---|
NSELF_BACKUP_DESTINATION |
Default destination URL |
NSELF_BACKUP_RECIPIENT |
Default age/SSH public key (space-separated for multiple) |
NSELF_BACKUP_CHUNK_MB |
Multipart chunk size in MB (default: 64, handled by rclone) |
AWS_ACCESS_KEY_ID |
S3/R2/B2 access key |
AWS_SECRET_ACCESS_KEY |
S3/R2/B2 secret key |
Restore a backup directly from a remote URL. No local disk space required.
rclone cat <from> | age --decrypt | pg_restore
nself backup restore-remote --from <url> [--key <identity-file>] [--yes]| Flag | Default | Description |
|---|---|---|
--from |
— | Source URL (rclone remote path) |
--key |
~/.config/nself/age-key.txt |
Path to age identity file |
--yes |
false | Skip confirmation on production |
# Restore encrypted backup from S3
nself backup restore-remote --from s3:mybucket/backups/myproject_stream_20260423.sql.age \
--key ~/.config/nself/age-key.txt
# Restore unencrypted backup
nself backup restore-remote --from r2:mybucket/backups/myproject_stream_20260423.sqlResume a previously interrupted streaming backup.
Since rclone rcat uploads are not resumable at the protocol level, resume re-streams the full backup and overwrites the partial remote object at the same key.
nself backup resume <backup-id>Resume state is stored in ~/.nself/backup-state/<id>.json.
Install a systemd timer to run nself backup stream on a cron schedule.
nself backup schedule --cron "0 2 * * *" --to <url> [--recipient <key>] [--dry-run]| Flag | Default | Description |
|---|---|---|
--cron |
— | Cron expression (e.g. 0 2 * * *) |
--to |
NSELF_BACKUP_DESTINATION |
Destination URL |
--recipient |
— | Default encryption recipient |
--unit-dir |
/etc/systemd/system |
Systemd unit directory |
--dry-run |
false | Print unit files without writing |
# Schedule nightly encrypted backup at 02:00 UTC
nself backup schedule --cron "0 2 * * *" --to s3:mybucket/backups --recipient age1abc123
# Preview the systemd units
nself backup schedule --cron "0 2 * * *" --to r2:mybucket --dry-runAfter scheduling, check the timer with:
nself backup status
systemctl status nself-backup-stream.timerCreate a local backup (written to BACKUP_DIR, default ./backups).
nself backup create [--type full|wal|metadata|minio|all] [--encrypt] [--tag <label>] [--dry-run]Restore from a local backup file.
nself backup restore <backup-id|latest> [--only pg,minio,metadata] [--decrypt-key <file>] [--yes]Verify backup integrity, optionally running a restore test in a temporary container.
nself backup verify <backup-id|latest> [--restore-test] [--cleanup] [--keep]List backups in the local backup directory.
nself backup list [--remote <name>] [--since 24h] [--format table|json]Remove backups beyond the retention policy.
nself backup prune [--keep-daily 7] [--keep-weekly 4] [--keep-monthly 12] [--dry-run]Show backup subsystem status: last run, next scheduled run, retention policy.
nself backup status [--format json]Restore the most recent backup into a scratch database, measure how long the restore took against an RTO target, and smoke-check the result.
nself backup drill [--file <backup>] [--rto-hours 4] [--dry-run] [--json]| Flag | Default | Meaning |
|---|---|---|
--file |
most recent backup | Backup file to drill against. |
--rto-hours |
4.0 |
RTO target in hours. 0 disables the gate. |
--dry-run |
false |
Validate inputs and exit without restoring. |
--json |
false |
Emit the drill result as JSON on stdout. |
After the restore, the drill checks that a list of critical tables exists by
name in the scratch database. The list comes from BACKUP_CRITICAL_TABLES
(comma-separated) when set, and otherwise falls back to the built-in
np_-prefixed default: np_users, np_licenses, np_audit_log,
np_plugins, np_billing.
Two things about this check are worth knowing before you rely on it:
- It tests presence only. A table that exists but holds no rows counts as present. The drill does not compare row counts against the source database.
- A missing table does not fail the drill. The verdict stays
PASSand the missing names are listed as an advisory. Treat the drill as a restore-path smoke test, not as a data-completeness gate.
Deployments whose schema does not use the np_ prefix will see every default
name reported missing until they set BACKUP_CRITICAL_TABLES.
Generate an age encryption keypair for backup encryption.
nself backup init-keyOutputs the public key to add to .env as BACKUP_AGE_RECIPIENTS.
| Flag | Default | Description |
|---|---|---|
--help, -h
|
— | Show help |
| Name | Description |
|---|---|
config |
View backup configuration |
create |
Create a new backup |
drill |
Run a DR drill: restore latest backup into scratch DB and measure RTO |
init-key |
Generate age encryption keypair for backups |
list |
List available backups |
pitr |
Point-in-time recovery: enable, disable, status, base-backup, restore |
prune |
Remove old backups by retention policy |
restore |
Restore from a backup |
restore-remote |
Restore a backup directly from a remote URL |
resume |
Resume an interrupted streaming backup |
schedule |
Schedule recurring streaming backups via systemd timers |
status |
Show backup subsystem status |
stream |
Stream an encrypted backup directly to a remote destination |
verify |
Verify backup integrity |
# Create a local backup
nself backup create
# List available backups
nself backup list
# Stream an encrypted backup straight to S3, no temp files
nself backup stream --to s3:mybucket/backups --recipient age1abc123
# Check backup subsystem status: last run, next scheduled, retention
nself backup status- Commands — full command index
- Core-Services — what a stack is made of
ɳSelf CLI v1.0.9. MIT licensed. Docs CC BY 4.0.
GitHub · Issues · Discussions · nself.org · nself.org/docs
Getting Started
Commands
- Commands, Overview
- Lifecycle: cmd-init · cmd-build · cmd-start · cmd-stop · cmd-restart · cmd-dev
- Monitoring: cmd-status · cmd-logs · cmd-health · cmd-urls · cmd-doctor · cmd-monitor · cmd-alerts · cmd-sentry · cmd-watchdog
- Data: cmd-db · cmd-backup · cmd-dr · cmd-queue · cmd-webhooks
- Config: cmd-config · cmd-service · cmd-env · cmd-promote
- Networking: cmd-ssl · cmd-trust · cmd-dns-setup
- Security: cmd-access · cmd-security · cmd-secrets
- Tenancy: cmd-tenant · cmd-billing
- Plugins: cmd-plugin · cmd-license · cmd-dogfood (extracted, CLI-R11) · cmd-k8s (extracted, CLI-R11) · cmd-encryption (extracted, CLI-R11) · cmd-waf (extracted, CLI-R11) · cmd-federation (extracted, CLI-R11) · cmd-mail (extracted, CLI-R11) · cmd-dlq (extracted, CLI-R11)
- AI: cmd-ai · cmd-claw · cmd-model
- Templates: cmd-template
- Utilities: cmd-exec · cmd-clean · cmd-reset · cmd-update · cmd-upgrade · cmd-version · cmd-admin · cmd-migrate · cmd-migrate-firebase · cmd-migrate-supabase · cmd-completion
Features
- Features, Overview
- Feature-Auth
- Feature-Storage
- Feature-Search
- Feature-Functions
- Feature-Email
- Feature-Monitoring
- Feature-Plugins
- Feature-nClaw, AI Assistant
- Feature-nChat, Messaging
- Feature-nTV, Media Player
- Feature-nFamily, Family Social
- Feature-nCloud, Managed Hosting
- Feature-Memory-Rooms, Knowledge Organization
- Feature-Agent-Dashboard, Agent Metrics
- Feature-Image-Generation, AI Image Generation
Configuration
- Configuration, Overview
- Config-Env-Vars
- Config-Postgres
- Config-Hasura
- Config-Auth
- Config-Nginx
- Config-Optional-Services
- Config-Custom-Services
- Config-System
Plugins (87 + 10 monitoring)
Free (25)
- plugin-backup
- plugin-content-acquisition
- plugin-content-progress
- plugin-cron
- plugin-donorbox
- plugin-feature-flags
- plugin-github
- plugin-github-runner
- plugin-invitations
- plugin-jobs
- plugin-link-preview
- plugin-mdns
- plugin-mlflow
- plugin-monitoring
- plugin-notifications
- plugin-notify
- plugin-paypal
- plugin-search
- plugin-shopify
- plugin-stripe
- plugin-subtitle-manager
- plugin-tokens
- plugin-torrent-manager
- plugin-vpn
- plugin-webhooks
Pro (62)
- plugin-access-controls
- plugin-activity-feed
- plugin-admin-api
- plugin-nself-ai-gateway
- plugin-nself-ai-mcp
- plugin-nself-ai-mcp
- plugin-analytics
- plugin-auth
- plugin-backup-pro
- plugin-bots
- plugin-browser
- plugin-calendar
- plugin-cdn
- plugin-chat
- plugin-claw
- plugin-claw-budget
- plugin-claw-news
- plugin-claw-web
- plugin-cloudflare
- plugin-cms
- plugin-compliance
- plugin-cron-pro
- plugin-ddns
- plugin-devices
- plugin-documents
- plugin-donorbox-pro
- plugin-entitlements
- plugin-epg
- plugin-file-processing
- plugin-game-metadata
- plugin-geocoding
- plugin-geolocation
- plugin-google
- plugin-home
- plugin-idme
- plugin-knowledge-base
- plugin-linkedin
- plugin-livekit
- plugin-media-processing
- plugin-meetings
- plugin-moderation
- plugin-mux
- plugin-notify-pro
- plugin-object-storage
- plugin-observability
- plugin-paypal-pro
- plugin-photos
- plugin-podcast
- plugin-post
- plugin-realtime
- plugin-recording
- plugin-retro-gaming
- plugin-rom-discovery
- plugin-shopify-pro
- plugin-social
- plugin-sports
- plugin-stream-gateway
- plugin-streaming
- plugin-stripe-pro
- plugin-support
- plugin-tmdb
- plugin-voice
- plugin-web3
- plugin-workflows
Planned (26)
plugin-auditplugin-blogplugin-checkoutplugin-commerceplugin-drmplugin-exportplugin-flowplugin-importplugin-ldapplugin-mailgunplugin-mediaplugin-oauth-providersplugin-pagesplugin-postmarkplugin-rate-limitplugin-reportsplugin-samlplugin-schedulerplugin-sendgridplugin-ssoplugin-subscriptionplugin-thumbplugin-transcoderplugin-twilioplugin-wafplugin-watermark
Guides
- Guide-Production-Deployment
- Guide-SSL-Setup
- Guide-Multi-Tenancy
- Guide-Security-Hardening
- Guide-Monitoring-Setup
- Guide-Backup-Restore
- Guide-Custom-Services
- Guide-Migration-from-v1
Architecture
Reference
- API-Reference
- error-codes, Error Codes
Licensing
Security
Brand
Operations
- operations/release-cascade, Release Cascade
- operations/self-healing, Self-Healing Schema
- operations/redis-tuning, Redis Pool Tuning
- operations/meilisearch-warmup, MeiliSearch Warm-Up
- operations/jwt-rotation, JWT Key Rotation
- operations/windows-wsl2-setup, Windows / WSL2 Setup
- operations/gemini-oauth-reauth, Gemini OAuth Reauth
Contributing
Admin
- USER-ACTION-QUEUE, Pending Admin Actions
All commands (52)
- A: cmd-access · cmd-account · cmd-admin
- B: cmd-backup · cmd-build · cmd-bundle
- C: cmd-ci · cmd-clean · cmd-completion · cmd-config
- D: cmd-db · cmd-deploy · cmd-dev · cmd-doctor
- E: cmd-env · cmd-exec
- F: cmd-functions
- G: cmd-generate
- H: cmd-health · cmd-help-topics
- I: cmd-init · cmd-install
- L: cmd-license · cmd-login · cmd-logout · cmd-logs
- M: cmd-man · cmd-mcp · cmd-migrate
- O: cmd-oauth · cmd-ops
- P: cmd-plugin · cmd-promote
- R: cmd-remove · cmd-reset · cmd-restart · cmd-runner
- S: cmd-secrets · cmd-security · cmd-self-heal · cmd-server · cmd-service · cmd-start · cmd-status · cmd-stop
- T: cmd-telemetry · cmd-template · cmd-trust
- U: cmd-update · cmd-urls
- V: cmd-verify-sbom · cmd-version