{"catalogRevision":"cat_f13ab9a494120b5e","recipeId":"page:recipes:reporting-dashboard:laravel:attachments","recipeRevision":"r1","canonicalPath":"/recipes/reporting-dashboard/laravel/attachments","label":"Host reporting dashboard with Laravel: file attachments","family":"Workload recipe","summary":"Deploy a reporting dashboard built with Laravel on Ample using the browser file uploads pattern. Compute runs the app in an isolated microVM behind a public HTTPS URL, a managed PostgreSQL 16 database is auto-provisioned and injected as DATABASE_URL, a private S3-compatible bucket holds objects with credentials delivered as encrypted environment variables. Verified on Laravel: content-type and size validation that rejects disallowed files, an object written to a private bucket and a row linking the record to the object key (reject=ok upload=ok linked=ok). Not separately tested: your upload UI, allowed types, size limits and virus scanning; treat the reporting dashboard-specific behavior as your application code.","representativeQueries":["Host reporting dashboard with Laravel: file attachments","Where can I host Reporting dashboard built with Laravel?","I need a restricted upload flow, file validation and record-to-object linkage."],"breadcrumbIds":["discovery","workload","workload:scheduling-and-data","workload:reporting-dashboard","page:recipes:reporting-dashboard:laravel:attachments"],"breadcrumbs":[{"id":"discovery","label":"Agent hosting discovery","canonicalPath":"/discover/discovery","kind":"root"},{"id":"workload","label":"Applications and workloads","canonicalPath":"/discover/workload","kind":"facet"},{"id":"workload:scheduling-and-data","label":"Scheduling and data","canonicalPath":"/discover/workload/scheduling-and-data","kind":"group"},{"id":"workload:reporting-dashboard","label":"Reporting dashboard","canonicalPath":"/discover/workload/reporting-dashboard","kind":"atom"},{"id":"page:recipes:reporting-dashboard:laravel:attachments","label":"Host reporting dashboard with Laravel: file attachments","canonicalPath":"/recipes/reporting-dashboard/laravel/attachments","kind":"recipe"}],"parentIds":["workload:reporting-dashboard","stack:framework-laravel","pattern:browser-file-uploads","intent:deploy-web-app"],"parents":[{"id":"workload:reporting-dashboard","label":"Reporting dashboard","canonicalPath":"/discover/workload/reporting-dashboard","kind":"atom"},{"id":"stack:framework-laravel","label":"Laravel","canonicalPath":"/discover/stack/framework-laravel","kind":"atom"},{"id":"pattern:browser-file-uploads","label":"Browser file uploads","canonicalPath":"/discover/pattern/browser-file-uploads","kind":"atom"},{"id":"intent:deploy-web-app","label":"Deploy web app","canonicalPath":"/discover/intent/deploy-web-app","kind":"atom"}],"resourceRequirements":["primitive:compute","primitive:postgres","primitive:s3-compatible-object-storage"],"infrastructureRequirements":[{"primitiveId":"primitive:compute","label":"Compute","canonicalPath":"/discover/primitive/compute","status":"verified","summary":"Apps run in isolated x86_64 Firecracker microVMs that auto-pause when idle and wake on request; sizes are the priced VM sizes."},{"primitiveId":"primitive:postgres","label":"Postgres","canonicalPath":"/discover/primitive/postgres","status":"verified","summary":"Managed PostgreSQL 16 runs in its own microVM and is auto-provisioned when an app needs a database and no DATABASE_URL is supplied."},{"primitiveId":"primitive:s3-compatible-object-storage","label":"S3-compatible object storage","canonicalPath":"/discover/primitive/s3-compatible-object-storage","status":"verified","summary":"Buckets are S3-compatible with issued credentials; PutObject and GetObject are verified by canary. Other S3 operations are not verified."}],"framework":"Laravel","workload":"Reporting dashboard","releaseStatus":"published","supportStatus":"verified","executionStatus":"ready","docsOnly":false,"prerequisites":["A Laravel project that builds and starts with the documented commands (composer install --no-dev from composer.lock, then FrankenPHP serving public/ (php-server with the index.php fallback) reading PORT on the php-8.5 template)","A PostgreSQL driver reading DATABASE_URL at runtime (auto-provisioned when omitted, or supplied with --env)","A bucket from `ample bucket create` with its credentials passed as encrypted S3_* environment variables","An Ample account token with servers:write, databases:read, buckets:read"],"testedConfiguration":{"template":"php-8.5","runtime":"php","size":"s-1vcpu-1gb","install":"composer install --no-dev --prefer-dist --no-interaction --no-progress --optimize-autoloader","start":"frankenphp php-server --listen :$PORT --root public"},"inputSchema":{"additionalProperties":false,"properties":{"env":{"description":"Encrypted environment variables (bucket credentials, secrets)","items":{"pattern":"^[A-Z][A-Z0-9_]*=.*$","type":"string"},"maxItems":50,"type":"array"},"name":{"description":"App name","maxLength":63,"minLength":1,"pattern":"^[a-z0-9-]+$","type":"string"},"path":{"description":"Project directory or ample.toml service","maxLength":512,"minLength":1,"type":"string"},"release_command":{"description":"Migration command run before activation","maxLength":512,"type":"string"}},"required":["env","name","path"],"type":"object"},"outputSchema":null,"workflowSteps":[{"title":"Build and start","body":"composer install --no-dev from composer.lock, then FrankenPHP serving public/ (php-server with the index.php fallback) reading PORT on the php-8.5 template. The server must bind 0.0.0.0 on PORT."},{"title":"Implement the pattern on PostgreSQL","body":"The fixture's module implements browser file uploads: content-type and size validation that rejects disallowed files, an object written to a private bucket and a row linking the record to the object key (reject=ok upload=ok linked=ok). Copy the approach into your schema; keep migrations idempotent and run them with --release-command."},{"title":"Wire object storage","body":"Create the bucket(s), then pass endpoint, region, bucket and keys as --env values. Use path-style addressing. Keep private data in an unpublished bucket."},{"title":"Deploy","body":"Run the synchronous deploy once and read the result (exit 0 live, 1 failed, 2 blocked). Re-running with no change is a no-op.","command":"ample deploy . --name <app-name> --public --env S3_ENDPOINT=... --env S3_REGION=... --env S3_BUCKET=... --env S3_ACCESS_KEY_ID=... --env S3_SECRET_ACCESS_KEY=..."},{"title":"Verify","body":"Fetch the live URL and the pattern self-test route(s) (/p/browser-file-uploads) from the example; then run your own checks. On failure read `ample logs <deployment_id> --kind build` then `--kind runtime`.","command":"ample logs <deployment_id> --kind build"}],"examples":[{"title":"Laravel pattern fixture","description":"Multi-pattern Laravel app whose browser file uploads module was checked live; the module is under tests/deploy-canaries/_pattern-modules.","sourceRef":"tests/deploy-canaries/laravel-patterns"}],"successChecks":[{"description":"app responds on its public URL","kind":"http_get","path":"/","expect":"ample canary laravel patterns"},{"description":"browser-file-uploads self-test","kind":"http_get","path":"/p/browser-file-uploads","expect":"reject=ok upload=ok linked=ok"}],"limitations":["Verified on the php-8.5 template at s-1vcpu-1gb with the example fixture; other sizes, templates and Laravel major versions are not verified.","The reporting dashboard itself (your upload UI, allowed types, size limits and virus scanning) is application code and was not separately tested; the pattern checks are what was verified.","Region, compliance attestations and request-duration limits are unknown and not claimed.","Apps auto-pause when idle and wake on the next request; always-on is an operator setting, not a plan feature.","Managed PostgreSQL 16 only; extensions, connection limits and backup or restore procedures are not verified; apps and their databases are placed together.","PutObject and GetObject with path-style addressing are verified; multipart upload, listing, presigned URLs and lifecycle rules are not."],"costEstimate":{"currency":"USD","monthlyAmount":10.0,"authoritative":true,"basis":"size prices from pricing.toml (loaded by the API) at build revision c580c64e344ac6391cd4873bd47103b1c5701b48","components":[{"name":"app server","size":"s-1vcpu-1gb","quantity":1.0,"monthlyAmount":5.0},{"name":"managed PostgreSQL database","size":"s-1vcpu-1gb","quantity":1.0,"monthlyAmount":5.0}],"note":"Always-on monthly price of the tested sizes; apps and databases auto-pause when idle. Buckets are allocation-priced per quota and not included."},"evidenceSummary":[{"kind":"canary_run","summary":"Laravel pattern fixture deployed on Ample (composer install --no-dev from composer.lock, then FrankenPHP serving public/ (php-server with the index.php fallback) reading PORT on the php-8.5 template); checks passed for browser-file-uploads and configuration-secrets. Pattern proof: content-type and size validation that rejects disallowed files, an object written to a private bucket and a row linking the record to the object key (reject=ok upload=ok linked=ok).","observedAt":"2026-09-20T20:36:21Z","implementationRevision":"118ad1c6d7d23d4c2ce069254bab9ec9d37cd57b (CLI 118ad1c)","expiresAt":"2027-03-19T20:36:21Z","scope":{"checks":["/p/browser-file-uploads"],"pattern":"pattern:browser-file-uploads","template":"php-8.5"}},{"kind":"canary_run","summary":"The same Laravel app deployed with a --release-command migration; the marker it created was readable after activation.","observedAt":"2026-09-20T20:36:21Z","implementationRevision":"118ad1c6d7d23d4c2ce069254bab9ec9d37cd57b (CLI 118ad1c)","expiresAt":"2027-03-19T20:36:21Z","scope":{"pattern":"pattern:browser-file-uploads"}}],"lastVerifiedAt":"2026-09-20T20:36:21Z","mcpBinding":{"registryRef":"mcp:ample_deploy","toolName":"ample_deploy","schemaHash":"876465fce906da0c224d62961d3343064108ebe30af80cf1b87094974e948853","observedAt":"2026-09-22T00:31:22.774679+00:00","implementationRevision":"e6446ceea69b","requiredScopes":["servers:write","databases:read","buckets:read"],"bindingState":"current"},"unknowns":["region availability is unknown until a verified region fact is recorded","compliance attestations are unknown; none are claimed"],"formats":{"html":"https://ample.computer/recipes/reporting-dashboard/laravel/attachments","markdown":"https://ample.computer/recipes/reporting-dashboard/laravel/attachments.md","json":"https://api.ample.computer/v1/catalog/recipes/page%3Arecipes%3Areporting-dashboard%3Alaravel%3Aattachments"},"nextActions":[{"actionId":"browse-catalog","label":"Browse the catalog index","operationId":"catalog_index","method":"GET","relativePath":"/v1/catalog","origin":"api","parameters":{},"requiresAuthentication":false,"requiresApproval":false},{"actionId":"search-recipes","label":"Search published recipes by intent, stack and constraints","operationId":"search_recipes","method":"POST","relativePath":"/v1/catalog/search","origin":"api","parameters":{"body":{"limit":5,"query":"Host reporting dashboard with Laravel: file attachments"}},"requiresAuthentication":false,"requiresApproval":false},{"actionId":"plan:page:recipes:reporting-dashboard:laravel:attachments","label":"Prepare a side-effect-free deployment plan for an authorized project","operationId":"plan_deployment","method":"POST","relativePath":"/v1/catalog/plan","origin":"api","parameters":{"body":{"inputs":{},"projectId":"<workspace or server id you own>","recipeId":"page:recipes:reporting-dashboard:laravel:attachments","recipeRevision":"r1"}},"requiresAuthentication":true,"requiresApproval":false},{"actionId":"auth-setup","label":"Read the existing agent authentication setup","operationId":"existing_auth_setup","method":"GET","relativePath":"/mcp/setup","origin":"api","parameters":{},"requiresAuthentication":false,"requiresApproval":false},{"actionId":"browse:workload:reporting-dashboard","label":"Browse Reporting dashboard","operationId":"browse_node","method":"GET","relativePath":"/v1/catalog/nodes/workload%3Areporting-dashboard","origin":"api","parameters":{"nodeId":"workload:reporting-dashboard"},"requiresAuthentication":false,"requiresApproval":false},{"actionId":"browse:stack:framework-laravel","label":"Browse Laravel","operationId":"browse_node","method":"GET","relativePath":"/v1/catalog/nodes/stack%3Aframework-laravel","origin":"api","parameters":{"nodeId":"stack:framework-laravel"},"requiresAuthentication":false,"requiresApproval":false},{"actionId":"browse:pattern:browser-file-uploads","label":"Browse Browser file uploads","operationId":"browse_node","method":"GET","relativePath":"/v1/catalog/nodes/pattern%3Abrowser-file-uploads","origin":"api","parameters":{"nodeId":"pattern:browser-file-uploads"},"requiresAuthentication":false,"requiresApproval":false},{"actionId":"browse:intent:deploy-web-app","label":"Browse Deploy web app","operationId":"browse_node","method":"GET","relativePath":"/v1/catalog/nodes/intent%3Adeploy-web-app","origin":"api","parameters":{"nodeId":"intent:deploy-web-app"},"requiresAuthentication":false,"requiresApproval":false}]}