{"catalogRevision":"cat_f13ab9a494120b5e","recipeId":"page:recipes:asset-library:spring-boot:attachments","recipeRevision":"r1","canonicalPath":"/recipes/asset-library/spring-boot/attachments","label":"Host asset library with Spring Boot: file attachments","family":"Workload recipe","summary":"Deploy a asset library built with Spring Boot on Ample using the browser file uploads pattern. Compute runs the app in an isolated microVM behind a public HTTPS URL, a managed PostgreSQL 16 database is auto-provisioned and injected as DATABASE_URL, a private S3-compatible bucket holds objects with credentials delivered as encrypted environment variables. Verified on Spring Boot: content-type and size validation that rejects disallowed files, an object written to a private bucket and a row linking the record to the object key (reject=ok upload=ok linked=ok). Not separately tested: your upload UI, allowed types, size limits and virus scanning; treat the asset library-specific behavior as your application code.","representativeQueries":["Host asset library with Spring Boot: file attachments","Where can I host Asset library built with Spring Boot?","I need a restricted upload flow, file validation and record-to-object linkage."],"breadcrumbIds":["discovery","workload","workload:scheduling-and-data","workload:asset-library","page:recipes:asset-library:spring-boot:attachments"],"breadcrumbs":[{"id":"discovery","label":"Agent hosting discovery","canonicalPath":"/discover/discovery","kind":"root"},{"id":"workload","label":"Applications and workloads","canonicalPath":"/discover/workload","kind":"facet"},{"id":"workload:scheduling-and-data","label":"Scheduling and data","canonicalPath":"/discover/workload/scheduling-and-data","kind":"group"},{"id":"workload:asset-library","label":"Asset library","canonicalPath":"/discover/workload/asset-library","kind":"atom"},{"id":"page:recipes:asset-library:spring-boot:attachments","label":"Host asset library with Spring Boot: file attachments","canonicalPath":"/recipes/asset-library/spring-boot/attachments","kind":"recipe"}],"parentIds":["workload:asset-library","stack:framework-spring-boot","pattern:browser-file-uploads","intent:deploy-web-app"],"parents":[{"id":"workload:asset-library","label":"Asset library","canonicalPath":"/discover/workload/asset-library","kind":"atom"},{"id":"stack:framework-spring-boot","label":"Spring Boot","canonicalPath":"/discover/stack/framework-spring-boot","kind":"atom"},{"id":"pattern:browser-file-uploads","label":"Browser file uploads","canonicalPath":"/discover/pattern/browser-file-uploads","kind":"atom"},{"id":"intent:deploy-web-app","label":"Deploy web app","canonicalPath":"/discover/intent/deploy-web-app","kind":"atom"}],"resourceRequirements":["primitive:compute","primitive:postgres","primitive:s3-compatible-object-storage"],"infrastructureRequirements":[{"primitiveId":"primitive:compute","label":"Compute","canonicalPath":"/discover/primitive/compute","status":"verified","summary":"Apps run in isolated x86_64 Firecracker microVMs that auto-pause when idle and wake on request; sizes are the priced VM sizes."},{"primitiveId":"primitive:postgres","label":"Postgres","canonicalPath":"/discover/primitive/postgres","status":"verified","summary":"Managed PostgreSQL 16 runs in its own microVM and is auto-provisioned when an app needs a database and no DATABASE_URL is supplied."},{"primitiveId":"primitive:s3-compatible-object-storage","label":"S3-compatible object storage","canonicalPath":"/discover/primitive/s3-compatible-object-storage","status":"verified","summary":"Buckets are S3-compatible with issued credentials; PutObject and GetObject are verified by canary. Other S3 operations are not verified."}],"framework":"Spring Boot","workload":"Asset library","releaseStatus":"published","supportStatus":"verified","executionStatus":"ready","docsOnly":false,"prerequisites":["A Spring Boot project that builds and starts with the documented commands (./mvnw -q -DskipTests package (or the Gradle wrapper) producing one application jar, then java -jar on the jvm-21 template (Temurin JDK 21) with server.port read from PORT)","A PostgreSQL driver reading DATABASE_URL at runtime (auto-provisioned when omitted, or supplied with --env)","A bucket from `ample bucket create` with its credentials passed as encrypted S3_* environment variables","An Ample account token with servers:write, databases:read, buckets:read"],"testedConfiguration":{"template":"jvm-21","runtime":"java","size":"s-1vcpu-2gb","build":"./mvnw -q -DskipTests package","start":"java -jar $(ls target/*.jar | grep -v -- '-plain' | head -n 1)"},"inputSchema":{"additionalProperties":false,"properties":{"env":{"description":"Encrypted environment variables (bucket credentials, secrets)","items":{"pattern":"^[A-Z][A-Z0-9_]*=.*$","type":"string"},"maxItems":50,"type":"array"},"name":{"description":"App name","maxLength":63,"minLength":1,"pattern":"^[a-z0-9-]+$","type":"string"},"path":{"description":"Project directory or ample.toml service","maxLength":512,"minLength":1,"type":"string"},"release_command":{"description":"Migration command run before activation","maxLength":512,"type":"string"}},"required":["env","name","path"],"type":"object"},"outputSchema":null,"workflowSteps":[{"title":"Build and start","body":"./mvnw -q -DskipTests package (or the Gradle wrapper) producing one application jar, then java -jar on the jvm-21 template (Temurin JDK 21) with server.port read from PORT. The server must bind 0.0.0.0 on PORT."},{"title":"Implement the pattern on PostgreSQL","body":"The fixture's module implements browser file uploads: content-type and size validation that rejects disallowed files, an object written to a private bucket and a row linking the record to the object key (reject=ok upload=ok linked=ok). Copy the approach into your schema; keep migrations idempotent and run them with --release-command."},{"title":"Wire object storage","body":"Create the bucket(s), then pass endpoint, region, bucket and keys as --env values. Use path-style addressing. Keep private data in an unpublished bucket."},{"title":"Deploy","body":"Run the synchronous deploy once and read the result (exit 0 live, 1 failed, 2 blocked). Re-running with no change is a no-op.","command":"ample deploy . --name <app-name> --public --env S3_ENDPOINT=... --env S3_REGION=... --env S3_BUCKET=... --env S3_ACCESS_KEY_ID=... --env S3_SECRET_ACCESS_KEY=..."},{"title":"Verify","body":"Fetch the live URL and the pattern self-test route(s) (/p/browser-file-uploads) from the example; then run your own checks. On failure read `ample logs <deployment_id> --kind build` then `--kind runtime`.","command":"ample logs <deployment_id> --kind build"}],"examples":[{"title":"Spring Boot pattern fixture","description":"Multi-pattern Spring Boot app whose browser file uploads module was checked live; the module is under tests/deploy-canaries/_pattern-modules.","sourceRef":"tests/deploy-canaries/spring-boot-patterns"}],"successChecks":[{"description":"app responds on its public URL","kind":"http_get","path":"/","expect":"ample canary spring boot patterns"},{"description":"browser-file-uploads self-test","kind":"http_get","path":"/p/browser-file-uploads","expect":"reject=ok upload=ok linked=ok"}],"limitations":["Verified on the jvm-21 template at s-1vcpu-2gb with the example fixture; other sizes, templates and Spring Boot major versions are not verified.","The asset library itself (your upload UI, allowed types, size limits and virus scanning) is application code and was not separately tested; the pattern checks are what was verified.","Region, compliance attestations and request-duration limits are unknown and not claimed.","Apps auto-pause when idle and wake on the next request; always-on is an operator setting, not a plan feature.","Managed PostgreSQL 16 only; extensions, connection limits and backup or restore procedures are not verified; apps and their databases are placed together.","PutObject and GetObject with path-style addressing are verified; multipart upload, listing, presigned URLs and lifecycle rules are not."],"costEstimate":{"currency":"USD","monthlyAmount":10.0,"authoritative":true,"basis":"size prices from pricing.toml (loaded by the API) at build revision 0c958eb34fa2adbf8e036129268257aa92e78ee7","components":[{"name":"app server","size":"s-1vcpu-1gb","quantity":1.0,"monthlyAmount":5.0},{"name":"managed PostgreSQL database","size":"s-1vcpu-1gb","quantity":1.0,"monthlyAmount":5.0}],"note":"Always-on monthly price of the tested sizes; apps and databases auto-pause when idle. Buckets are allocation-priced per quota and not included."},"evidenceSummary":[{"kind":"canary_run","summary":"Spring Boot pattern fixture deployed on Ample (./mvnw -q -DskipTests package (or the Gradle wrapper) producing one application jar, then java -jar on the jvm-21 template (Temurin JDK 21) with server.port read from PORT); checks passed for browser-file-uploads and configuration-secrets. Pattern proof: content-type and size validation that rejects disallowed files, an object written to a private bucket and a row linking the record to the object key (reject=ok upload=ok linked=ok).","observedAt":"2026-09-21T02:34:39Z","implementationRevision":"1d28ae0 (CLI 0.1.21)","expiresAt":"2027-03-20T02:34:39Z","scope":{"checks":["/p/browser-file-uploads"],"pattern":"pattern:browser-file-uploads","template":"jvm-21"}},{"kind":"canary_run","summary":"The same Spring Boot app deployed with a --release-command migration; the marker it created was readable after activation.","observedAt":"2026-09-20T22:49:19Z","implementationRevision":"af6f45adea26 (CLI af6f45a)","expiresAt":"2027-03-19T22:49:19Z","scope":{"pattern":"pattern:browser-file-uploads"}}],"lastVerifiedAt":"2026-09-21T02:34:39Z","mcpBinding":{"registryRef":"mcp:ample_deploy","toolName":"ample_deploy","schemaHash":"876465fce906da0c224d62961d3343064108ebe30af80cf1b87094974e948853","observedAt":"2026-09-22T00:31:22.774679+00:00","implementationRevision":"e6446ceea69b","requiredScopes":["servers:write","databases:read","buckets:read"],"bindingState":"current"},"unknowns":["region availability is unknown until a verified region fact is recorded","compliance attestations are unknown; none are claimed"],"formats":{"html":"https://ample.computer/recipes/asset-library/spring-boot/attachments","markdown":"https://ample.computer/recipes/asset-library/spring-boot/attachments.md","json":"https://api.ample.computer/v1/catalog/recipes/page%3Arecipes%3Aasset-library%3Aspring-boot%3Aattachments"},"nextActions":[{"actionId":"browse-catalog","label":"Browse the catalog index","operationId":"catalog_index","method":"GET","relativePath":"/v1/catalog","origin":"api","parameters":{},"requiresAuthentication":false,"requiresApproval":false},{"actionId":"search-recipes","label":"Search published recipes by intent, stack and constraints","operationId":"search_recipes","method":"POST","relativePath":"/v1/catalog/search","origin":"api","parameters":{"body":{"limit":5,"query":"Host asset library with Spring Boot: file attachments"}},"requiresAuthentication":false,"requiresApproval":false},{"actionId":"plan:page:recipes:asset-library:spring-boot:attachments","label":"Prepare a side-effect-free deployment plan for an authorized project","operationId":"plan_deployment","method":"POST","relativePath":"/v1/catalog/plan","origin":"api","parameters":{"body":{"inputs":{},"projectId":"<workspace or server id you own>","recipeId":"page:recipes:asset-library:spring-boot:attachments","recipeRevision":"r1"}},"requiresAuthentication":true,"requiresApproval":false},{"actionId":"auth-setup","label":"Read the existing agent authentication setup","operationId":"existing_auth_setup","method":"GET","relativePath":"/mcp/setup","origin":"api","parameters":{},"requiresAuthentication":false,"requiresApproval":false},{"actionId":"browse:workload:asset-library","label":"Browse Asset library","operationId":"browse_node","method":"GET","relativePath":"/v1/catalog/nodes/workload%3Aasset-library","origin":"api","parameters":{"nodeId":"workload:asset-library"},"requiresAuthentication":false,"requiresApproval":false},{"actionId":"browse:stack:framework-spring-boot","label":"Browse Spring Boot","operationId":"browse_node","method":"GET","relativePath":"/v1/catalog/nodes/stack%3Aframework-spring-boot","origin":"api","parameters":{"nodeId":"stack:framework-spring-boot"},"requiresAuthentication":false,"requiresApproval":false},{"actionId":"browse:pattern:browser-file-uploads","label":"Browse Browser file uploads","operationId":"browse_node","method":"GET","relativePath":"/v1/catalog/nodes/pattern%3Abrowser-file-uploads","origin":"api","parameters":{"nodeId":"pattern:browser-file-uploads"},"requiresAuthentication":false,"requiresApproval":false},{"actionId":"browse:intent:deploy-web-app","label":"Browse Deploy web app","operationId":"browse_node","method":"GET","relativePath":"/v1/catalog/nodes/intent%3Adeploy-web-app","origin":"api","parameters":{"nodeId":"intent:deploy-web-app"},"requiresAuthentication":false,"requiresApproval":false}]}