next.config.ts falls back to `git rev-parse HEAD`, but the build context has no .git (excluded by .dockerignore), so every CI build printed fatal git errors and stamped the release as "unknown". Pass the deploy commit sha as a NEXT_DEPLOYMENT_ID build-arg so git is never invoked and the actual commit reaches NEXT_PUBLIC_CMS_RELEASE and deploymentId.