Docyrus App Dev React
Build Docyrus React TypeScript applications end-to-end. This skill combines app architecture, authentication, data access, query patterns, and production-grade UI guidance in one place.
Recommended Tech Stack
- React 19 + TypeScript + Vite
- TanStack Router (code-based), TanStack Query (server state), TanStack Form
- Tailwind CSS v4, shadcn/ui components
@docyrus/api-client+@docyrus/signin+@docyrus/app-utils@docyrus/devtools— recommended in-app developer panel for every Docyrus app during development (network, errors, issues, console, iframe messages, OpenAPI request explorer, DOM element picker); gate it to non-production builds- Auto-generated collections from OpenAPI spec
- Preferred UI libraries: shadcn, diceui, animate-ui, docyrus-ui, reui
When to Use This Skill
Use this skill when you are:
- Building or modifying a Docyrus-backed React app
- Setting up authentication with
@docyrus/signin - Bootstrapping tenant-aware runtime utilities with
@docyrus/app-utils - Fetching or mutating data with generated collections or
@docyrus/api-client - Persisting app-level config or user-level config or saved grid views with
AppConfig,UserAppConfig, andDataViews - Building record sharing, role management, or ACL-driven UI flows
- Designing feature UIs such as dashboards, forms, tables, layouts, dialogs, analytics, or detail pages
- Selecting between shadcn, diceui, animate-ui, docyrus-ui, and reui components
- Implementing complete feature flows that combine data access and polished UI
End-to-End Feature Workflow
- Set up app auth, routing, and query providers.
@docyrus/signinalready fetches the signed-in user from/v1/users/me— read it fromuseDocyrusAuth().user, do not add your own user call. - Mount
@docyrus/devtoolsnear the root (dev builds only) and register the authenticated client so requests, errors, and console are instrumented from the start. - After sign-in, create one shared
InventoryClient(createInventoryClient) andload()it behind a progress bar to warm apps, data sources, users, brands, preferences, and this app's config. - Bootstrap
TenantPreferences, date/number utilities, and shared app runtime helpers from@docyrus/app-utils, wiring the shared inventory into every app-utils client. - Use generated Docyrus collection hooks or the REST client for data access.
- Define
columns, filters, formulas, child queries, and mutations correctly. - Use
AppConfigfor per-app persisted settings,UserAppConfigfor per-user per-app settings, andDataViewsfor saved grid views. - Check preferred UI components before building anything custom.
- Use Docyrus form and detail patterns for create, edit, item detail, and editable grid flows.
- Connect UI actions to TanStack Query mutations and invalidate relevant queries.
Quick Start: App Bootstrap
Root provider setup
import { DocyrusAuthProvider } from '@docyrus/signin'
<DocyrusAuthProvider
apiUrl={import.meta.env.VITE_API_BASE_URL}
clientId={import.meta.env.VITE_OAUTH2_CLIENT_ID}
redirectUri={import.meta.env.VITE_OAUTH2_REDIRECT_URI}
scopes={['offline_access', 'Read.All', 'DS.ReadWrite.All', 'Users.Read']}
callbackPath="/auth/callback"
>
<QueryClientProvider client={queryClient}>
<RouterProvider router={router} />
</QueryClientProvider>
</DocyrusAuthProvider>
Auth gate and current-user access
const { status, user, hasRole, hasPermission } = useDocyrusAuth()
if (status === 'loading') return <Spinner />
if (status === 'unauthenticated') return <SignInButton />
// user is auto-fetched from /v1/users/me after authentication
// hasRole('super_admin') — check role by slug or uid
// hasPermission('edit', dataSourceId) — check ACL permission on a data source
@docyrus/signin already fetches the signed-in user. On authentication it calls /v1/users/me once and exposes the result (roles, permissions, aclRules, identity) as useDocyrusAuth().user. Read the current user and do all auth/role/permission checks from there — never add your own /v1/users/me request. Call refreshUser() to re-fetch after a role change. Only reach for useUsersCollection().getMyInfo() when you need profile fields that are not on the auth user.
Inventory cache warm-up after sign-in
Right after @docyrus/signin reports an authenticated session, create one shared InventoryClient from @docyrus/app-utils and load() it behind a progress bar. The inventory is a tenant-wide in-memory cache of apps, data sources (with embedded views/forms/fields), users, brands, tenant preferences, and this app's config/user-config. Warming it once turns nearly every later metadata read across the app into a cache hit (no network), and the same instance backs every app-utils client you pass it to.
Create the single instance at bootstrap and wire every app-utils client to it:
// services/docyrus.ts — one cache, shared by every client
import {
createInventoryClient,
createDataSourceClient,
createBrandClient,
createAppConfigClient,
createUserAppConfigClient,
createDataViewClient,
} from '@docyrus/app-utils'
const appId = import.meta.env.VITE_APP_ID
export const inventory = createInventoryClient(apiClient)
export const dataSources = createDataSourceClient(apiClient, { inventory })
export const brands = createBrandClient(apiClient, { inventory })
export const appConfig = createAppConfigClient(apiClient, appId, { inventory })
export const userAppConfig = createUserAppConfigClient(apiClient, appId, { inventory })
// View/form clients are per data source — construct on demand, always sharing `inventory`
export const viewsFor = (appSlug: string, dsSlug: string) =>
createDataViewClient(apiClient, appSlug, dsSlug, { inventory })
Warm the cache once, after sign-in, before routing to the home page:
// Runs after useDocyrusAuth() reports an authenticated session.
async function bootstrapAfterSignIn(setProgress: (p: { label: string; value: number }) => void) {
await inventory.load({
// Drop 'users' from `include` if the signed-in user may lack the Users.Read.All scope.
onProgress: ({ message, ratio, phase }) => {
setProgress({ label: message, value: Math.round(ratio * 100) })
if (phase === 'complete') setProgress({ label: 'Ready', value: 100 })
},
})
}
- Create the inventory after sign-in — it needs the authenticated
apiClient. - Pass the same
inventoryto every app-utils client so they share one cache; mutations through those clients patch the cache automatically. load()warms apps, data sources, users, brands, and preferences, plus this app's config/user-config whenVITE_APP_IDis set; it emits progress events for a post-sign-in progress bar.- A full page reload starts cold — that is why
load()runs after each sign-in. On a tenant switch without reload, callinventory.refresh()so the new tenant's data replaces the old.
See references/app-utils-readme.md (the "createInventoryClient" section) for load() options, scope handling, and cache-invalidation helpers.
Tenant-aware app utilities
Use @docyrus/app-utils as the default runtime layer for tenant-level formatting and persisted app/grid preferences.
import {
createAppConfigClient,
createUserAppConfigClient,
createDataViewClient,
createDateUtils,
createNumberUtils,
getTenantPreferences,
} from '@docyrus/app-utils'
function useAppRuntime(appId: string) {
const client = useDocyrusClient()
const { getMyInfo } = useUsersCollection()
return useQuery({
queryKey: ['app-runtime', appId],
enabled: !!client && !!appId,
queryFn: async () => {
const [preferences, me] = await Promise.all([
getTenantPreferences(client!),
getMyInfo(),
])
return {
preferences,
me,
dateUtils: createDateUtils({
preferences,
userTimezone: me.timeZone?.id,
}),
numberUtils: createNumberUtils({ preferences }),
appConfig: createAppConfigClient(client!, appId),
userConfig: createUserAppConfigClient(client!, appId),
dataViews: createDataViewClient(client!, appId),
}
},
})
}
Use this runtime to:
- Format dates and datetimes with tenant format strings and the user's timezone.
- Format numbers, currency-like values, and decimals using tenant separators and precision.
- Read and upsert the app's single persisted
AppConfigdocument. - Read and upsert the current user's
UserAppConfigdocument (per-user per-app settings). - Read and persist saved grid views through
DataViews.
When you have warmed a shared inventory (see above), pass { inventory } to each of these clients and read preferences from inventory.getPreferences() instead of a fresh getTenantPreferences(client) call — every read then resolves from the warmed cache.
Data fetching with generated collections
const { list } = useBaseProjectCollection()
const { data: projects } = useQuery({
queryKey: ['projects'],
queryFn: () =>
list({
columns: ['name', 'status', 'record_owner(firstname,lastname)'],
filters: { rules: [{ field: 'status', operator: '!=', value: 'archived' }] },
orderBy: 'created_on DESC',
limit: 50,
}),
})
ACL, roles, and record sharing
Use direct useDocyrusClient() calls for ACL features. These routes may be hidden from generated OpenAPI output, so they are typically not available through generated collection hooks.
const client = useDocyrusClient()
const { data: roles } = useQuery({
queryKey: ['acl', 'roles'],
queryFn: () => client!.get('/v1/users/acl/roles'),
})
const replaceUserRoles = useMutation({
mutationFn: ({ userId, roleIds }: { userId: string; roleIds: string[] }) =>
client!.put(`/v1/users/acl/users/${userId}/roles`, { roleIds }),
})
const createRoleQuery = useMutation({
mutationFn: (payload: Record<string, unknown>) =>
client!.post('/v1/users/acl/role-queries', payload),
})
Prefer role uid values returned by the API when sending roleIds for user-role updates or role-query payloads.
Saved data grid views
Use DataGridViewSelect as the default saved-view UI for Docyrus grids, and persist those views with createDataViewClient(client, appId).
DataGridViewSelectis the default component for showing and editing saved grid views.- Pass the TanStack table instance via
tableso the selector/editor can read column definitions. - Pass
fieldswhen you want the built-in filter builder enabled in the editor. - Back
views,onViewCreate,onViewSave,onViewDelete,onViewHide, andonViewUnhidewithDataViewsCRUD. - Use
DataGridViewEditorseparately only when you need a standalone editor outside the selector.
Dev tooling with @docyrus/devtools
Wire @docyrus/devtools into every Docyrus app. It mounts a floating trigger and a docked panel with Network, Errors, Issues, Explore, Console, and Messages tabs — instrumenting @docyrus/api-client requests (with duplicate/slow detection), TanStack Query issues, console output, and iframe ↔ host postMessage traffic, plus an OpenAPI-driven request explorer that replays endpoints through the app's authenticated client.
import { DocyrusDevtools, useRegisterDocyrusClient } from '@docyrus/devtools'
import { DocyrusAuthProvider, useDocyrusClient } from '@docyrus/signin'
function RegisterDevtoolsClient() {
// Register the auth-managed client once it exists so requests are instrumented.
useRegisterDocyrusClient(useDocyrusClient())
return null
}
export function App() {
return (
<QueryClientProvider client={queryClient}>
{/* enabled gates ALL instrumentation — keep devtools out of production */}
<DocyrusDevtools enabled={import.meta.env.DEV} queryClient={queryClient} openApiSpecPath="/openapi-spec.json">
<DocyrusAuthProvider apiUrl={/* … */} clientId={/* … */}>
<RegisterDevtoolsClient />
<YourRoutes />
</DocyrusAuthProvider>
</DocyrusDevtools>
</QueryClientProvider>
)
}
- Gate it with
enabled={import.meta.env.DEV}(or ship it dormant behindactivationShortcutfor on-demand use in production). Whenenabledisfalse, it only renders children — no listeners, no UI. - Pass the existing
queryClientso TanStack Query issues surface in theIssuestab. - Call
useRegisterDocyrusClient(useDocyrusClient())after mount so the auth-managed client is instrumented as soon as it exists. - Point
openApiSpecPathat the served spec to enable the request explorer.
See references/devtools-readme.md for the full prop list, host bridge, iframe-message tap, DOM element picker, and the CDP/agent in-page API.
Critical App/Data Rules
- Always send
columnsin.list()and.get()calls. Without it, onlyidis returned. - Collections are React hooks — call
useBaseProjectCollection(),useUsersCollection(), and similar hooks inside React components. - Data source endpoints are dynamic — they only exist if the data source is defined in the tenant OpenAPI spec.
- Use
idforcountcalculations. Use actual field slugs forsum,avg,min, andmax. - Child query keys must appear in
columns. - Formula keys must appear in
columns. - Read the signed-in user from
useDocyrusAuth().user—@docyrus/signinalready fetches it from/v1/users/meon sign-in (roles, permissions,aclRules, identity). Never add your own/v1/users/mecall; userefreshUser()after a role change, anduseUsersCollection().getMyInfo()only for profile fields not on the auth user. - Initialize
TenantPreferencesonce per app runtime and create shareddateUtils/numberUtilsinstances from@docyrus/app-utils. - Formatting functions from
@docyrus/app-utilsare regionalized — do not hardcode locale, date format, decimal separator, thousand separator, or decimal precision when tenant preferences should drive them. - Use
createAppConfigClient(client, appId)for the app's single persisted config document;upsertis the default write path. - Use
createUserAppConfigClient(client, appId)for the current user's persisted config document scoped to an app (e.g. theme, layout preferences, sidebar state);upsertis the default write path. - Use
createDataViewClient(client, appId)for saved grid-view CRUD. - Use
DataViewswithDataGridViewSelectto show, create, edit, reorder, hide, unhide, soft-delete, and hard-delete saved data grid views. DataGridViewSelectneeds a TanStack table instance and should receivefieldswhen you want the built-in filter builder/editor experience.- Data view creation requires
nameandtenant_data_source_id. - Use
dataViews.update(viewId, { archived: true })for soft-delete anddataViews.remove(viewId)only for irreversible hard-delete. - Regenerate collections after schema changes by rebuilding the tenant OpenAPI spec, downloading the latest
openapi.json, and re-running the collection generator. - ACL endpoints are usually raw-client integrations — use
useDocyrusClient()orRestApiClientfor roles, user-role assignments, role queries, record sharing, and ownership transfer. - Prefer role
uidvalues for ACL role writes, user-roleroleIds, and role-queryroleIds. - Treat
PUT /v1/users/acl/users/:userId/rolesas full replacement andPOST /v1/users/acl/users/:userId/rolesas additive. - Send role-query
queryas raw JSON and omittenantAppIdwhendataSourceIdis present; backend derives it. - After deleting a role, invalidate dependent app queries for role lists, user-role lists, role-query lists, and any UI that renders primary-role labels.
- Create one shared
InventoryClientafter sign-in andload()it — pass that single instance to every app-utils client so they share the warmed cache; callinventory.refresh()on tenant switch. - Mount
@docyrus/devtoolsin dev builds gated byenabled={import.meta.env.DEV}, pass the app'squeryClient, and register the auth client withuseRegisterDocyrusClient(useDocyrusClient()).
Critical UI/UX Rules
- Always check preferred components first before creating anything custom.
- Use
AwesomeCardfor dashboards unless the user explicitly wants a different card style. - Use animate-ui
Sidebarfor app layouts unless another layout is requested. - Prefer Recharts for charts in general feature UI. Exception — dashboards/analytics/reporting: use the docyrus-dashboard-design skill, which mandates Bklit UI charts,
AwesomeCardpanels, andAwesomeStatsKPI cards. - Use icons in this order: hugeicons, then fontawesome light, then lucide.
- Use
AwesomeDialogfor item create forms.- Small/simple forms:
container="sheet"withside="right" - Long/complex forms:
container="modal"orcontainer="drawer"
- Small/simple forms:
- Choose detail containers based on item complexity.
- Large items: dedicated page
- Small items:
AwesomeDialogright sheet
- All forms must use TanStack Form + the Docyrus form system. Do not build feature forms with plain HTML forms or React Hook Form directly.
- Use
EditableRecordDetailfor inline editing in item detail views. - Always enable
trackChangesfor editable detail and grid experiences. - Use
DataGridViewSelectfor saved grid views and back it withDataViewsfrom@docyrus/app-utils. - Prefer
DataGridViewEditoronly when you need a standalone grid-view editor outside the selector component.
Default UI Choices
| Use Case | Default Component | Library |
|---|---|---|
| Item create form | AwesomeDialog | docyrus |
| Quick record create | CreateRecordDialog | docyrus |
| Item detail (small) | AwesomeDialog sheet right | docyrus |
| Item detail (large) | Dedicated page | — |
| Inline editing | EditableRecordDetail | docyrus |
| Dashboard card | AwesomeCard | docyrus |
| Stat dashboards | AwesomeStats | docyrus |
| App navigation | Sidebar | animate-ui |
| Data table | DataTable | diceui |
| Editable grid | Data Grid | docyrus |
| Grid saved views | DataGridViewSelect + DataViews | docyrus + @docyrus/app-utils |
| Forms | Docyrus form fields + TanStack Form | docyrus |
| Charts (general) | shadcn chart + Recharts | shadcn |
| Dashboards / analytics / KPIs | Bklit charts + AwesomeCard + AwesomeStats (see docyrus-dashboard-design) | bklit + docyrus |
| File upload | File Upload | diceui |
| Gantt/project scheduling | Gantt | docyrus |
| Resource scheduling | ResourceSchedulerPanel | docyrus |
| Team chat | TeamChatChannel | docyrus |
| AI interface | DocyrusAgent | docyrus |
| Pricing / quoting | PricingEnginePanel | docyrus |
| Analytics / pivot | PivotGrid | docyrus |
Quick UI Patterns
Item create form
<AwesomeDialog open={open} onOpenChange={setOpen} container="sheet" side="right" size="default">
<AwesomeDialogHeader title="Create Task" icon="far-plus" />
<AwesomeDialogBody>
<form.Field name="title">{(field) => <TextFormField field={field} label="Title" />}</form.Field>
<form.Field name="status">{(field) => <SelectFormField field={field} label="Status" />}</form.Field>
</AwesomeDialogBody>
<AwesomeDialogFooter>
<Button variant="outline" onClick={() => setOpen(false)}>Cancel</Button>
<Button onClick={handleSubmit}>Create</Button>
</AwesomeDialogFooter>
</AwesomeDialog>
Item detail with inline editing
<AwesomeDialog open={open} onOpenChange={setOpen} container="sheet" side="right" size="lg" fullscreenable>
<AwesomeDialogHeader
title="Task Detail"
description="Review and edit task fields inline"
headerButtons={<Button variant="outline" size="sm" onClick={switchToFullForm}>Edit All</Button>}
/>
<AwesomeDialogBody>
<EditableRecordDetail fields={fields} record={record} onSave={handleSave} trackChanges>
<EditableRecordDetailField slug="title" />
<EditableRecordDetailField slug="status" />
<EditableRecordDetailField slug="assignee" />
<EditableRecordDetailField slug="due_date" />
</EditableRecordDetail>
</AwesomeDialogBody>
</AwesomeDialog>
TanStack Query Pattern
function useProjects(params?: ICollectionListParams) {
const { list } = useBaseProjectCollection()
return useQuery({
queryKey: ['projects', 'list', params],
queryFn: () => list({ columns: PROJECT_COLUMNS, ...params }),
})
}
function useCreateProject() {
const { create } = useBaseProjectCollection()
const qc = useQueryClient()
return useMutation({
mutationFn: (data: Record<string, unknown>) => create(data),
onSuccess: () => {
void qc.invalidateQueries({ queryKey: ['projects'] })
},
})
}
Collection CRUD Methods
const { list, get, create, update, delete: deleteOne, deleteMany } = useBaseProjectCollection()
list(params?: ICollectionListParams)
get(id, { columns })
create(data)
update(id, data)
deleteOne(id)
deleteMany({ recordIds })
API endpoint pattern: /v1/apps/{appSlug}/data-sources/{slug}/items
Query Capabilities Summary
The .list() method supports:
columnsfiltersfilterKeywordorderBylimitandoffsetfullCountcalculationsformulaschildQueriespivotexpand
Component Installation Pattern
pnpm dlx shadcn@latest add button
pnpm dlx shadcn@latest add @diceui/data-table
pnpm dlx shadcn@latest add @animate-ui/sidebar
pnpm dlx @docyrus/cli add @docyrus/ui-awesome-card
pnpm dlx shadcn@latest add @reui/file-upload-default
References
For deep dives, read:
references/README.md— merged reference map for app development and UI designreferences/api-client-and-auth.mdreferences/collections-and-patterns.mdreferences/signin-readme.md— full@docyrus/signinpackage README (auth provider, hooks, iframe/host bridge, SSR, roles & permissions). Published on npm as@docyrus/signin; source atdocyrus-devkit/packages/signinreferences/host-communication-integration.md— embedded-app ↔ host shellpostMessageintegration, excluding Guidy: host→app navigation (useDocyrusHostNavigation) & notifications (useDocyrusHostNotification), app→host route sync (syncRouteToHost/useDocyrusHostRouteSync/notifyRouteChange) and navigation requests (requestHostNavigation), origin validation, Vue equivalentsreferences/guidy-integration.md— make an embedded app Guidy-compatible (host AI assistant driving the app's UI):enableGuidyBridge, targetable controls (stable ids + accessible labels), and declared routes (guidyRoutes/useDocyrusGuidyRoutes); routes also needuseDocyrusHostNavigationfrom the host-communication referencereferences/app-utils-readme.md— full@docyrus/app-utilspackage README (tenant preferences, date/number formatting, app/user config, data views/forms, data-source metadata, and the Inventory Cache). Published on npm as@docyrus/app-utils; source atdocyrus-devkit/packages/app-utilsreferences/devtools-readme.md— full@docyrus/devtoolspackage README (in-app dev panel, request/console/message instrumentation, OpenAPI explorer, element picker, CDP/agent API). Published on npm as@docyrus/devtools; source atdocyrus-devkit/packages/devtools- the docyrus-app-settings skill — designing and using app-scoped (
AppConfig) and per-user (UserAppConfig) settings documents withcreateAppConfigClient/createUserAppConfigClient: scope choice, wholesale-replace and empty-document gotchas, and the REST/CLI contract - the docyrus-acl-design skill — ACL roles, permissions, and role-queries (
docyrus acl); plus the ACL REST endpoints in docyrus-api-dev's SKILL.md ../docyrus-api-dev/references/data-source-query-guide.md../docyrus-api-dev/references/formula-design-guide-llm.md../docyrus-api-dev/references/query-guide.mdreferences/preferred-components-catalog.mdreferences/component-selection-guide.mdreferences/icon-usage-guide.md