27 KiB
AGENTS.md
AI coding agent guidelines for NNTmux - a Laravel 13 Usenet indexer.
Quick Reference
php artisan test --compact --filter=TestName # Run single test (PHPUnit only)
./vendor/bin/pint --dirty # Format changed files
php artisan tmux:start # Start processing engine
npm run build # Required after frontend changes
php artisan route:cache # Refresh cached routes if new routes seem missing
Architecture
NNTmux scans Usenet servers, collects headers, organizes releases, and enriches with metadata. Data flow:
NNTP → NNTPService → BinariesRunner → ReleaseCreationService → ReleaseProcessingService → SearchService → API/Web
Key Patterns
| Pattern | Location | Example |
|---|---|---|
| Service Layer | app/Services/ |
50+ services with facades (Search::, Categorization::, TvProcessing::, Yenc::, Elasticsearch::) |
| Pipeline | */Pipes/ |
TvProcessingPipeline (TMDB→TVDB→TVMaze→Trakt), CategorizationPipeline (priority-driven; Music runs before Book for audiobook detection) |
| Driver | Search/Drivers/ |
Manticore/Elasticsearch via SEARCH_DRIVER env var |
| Runners | Runners/ |
BinariesRunner, ReleasesRunner, BackfillRunner, PostProcessRunner |
| DTO | */DTO/, app/Support/DTOs/, app/Data/ |
Internal: NameFixResult, ReleaseProcessingContext, ReleaseCreationResult. API responses use Spatie Laravel Data in app/Data/Api/ (ReleaseData, CategoryData, DetailsData) |
| Enum | app/Enums/ |
UserRole, QueueType, FileCompletionStatus, SecondarySearchIndex, NzbImportStatus |
| Observer | app/Observers/, AppServiceProvider |
ReleaseObserver, MovieInfoObserver, RolePromotionObserver |
| View Composer | app/View/Composers/, AppServiceProvider |
GlobalDataComposer shared across layouts.* and admin.* |
| Status Probe | app/Services/StatusProbes/ |
ServiceProbeRegistry aggregates DatabaseProbe, DiskProbe, NntpProbe, QueueProbe, RedisProbe, SearchProbe for StatusPageController (/status) and DegradeWhenRedisUnreachable middleware; tune via config/status-probes.php |
| Passkey | app/Actions/Passkeys/, app/Http/Controllers/Auth/Passkey* |
Spatie Laravel Passkeys; ceremony actions (GeneratePasskeyRegisterOptionsAction, FindPasskeyToAuthenticateAction) wire into routes passkeys.* in routes/web.php. GeneratePasskeyRegisterOptionsAction overrides authenticatorSelection() (defaults: attachment=null, residentKey=preferred, userVerification=preferred) and injects WebAuthn L3 hints + credProps extension so Windows Hello / Touch ID / phone-via-QR / FIDO2 keys all appear in the browser picker on Windows domain machines. Tunable via PASSKEY_AUTHENTICATOR_ATTACHMENT, PASSKEY_RESIDENT_KEY, PASSKEY_USER_VERIFICATION, PASSKEY_RELYING_PARTY_ID (see config/passkeys.php) |
Tmux Processing Engine
Multi-pane terminal orchestrator at app/Services/Tmux/. Components: TmuxSessionManager, TmuxLayoutBuilder, TmuxPaneManager, TmuxTaskRunner, TmuxMonitorService.
Sequential Modes (Settings::settingValue('sequential')):
- Mode 0: Full (3 windows, parallel panes)
- Mode 1: Basic (reduced)
- Mode 2: Stripped (minimal)
Commands: tmux:start, tmux:stop, tmux:attach, tmux:monitor, tmux:health-check
Config: config/tmux.php + database settings table
Post-process panes (window 2: panes 2.0–2.3) run php artisan multiprocessing:postprocess <type>, which fans out work as multiple postprocess:guid <type> <char> child processes via App\Services\Runners\PostProcessRunner. Types: add/nfo (pane 2.0), tv/ani (2.1), ama (2.2 — books+music+console+games), mov (2.3). Per-type aliases: boo, mus, con, gam.
- Live tmux output: set
STREAM_FORK_OUTPUT=truein.env(config('nntmux.stream_fork_output')). When false (default), child output is buffered per batch and the pane may look idle until a batch completes. - Parallelism settings (all default to
1indatabase/seeders/SettingsTableSeeder.php; raise via Admin UI or DB):postthreads(additional),nfothreads(NFO whenpost=3),postthreadsnon(TV/anime/movies),postthreadsamazon(books/music/console/games andamafan-out). Raisingnfothreadsopens that many parallel NNTP sessions for NFO children. - Batch sizing: up to 16 distinct first-character GUID buckets per type per cycle (
LIMIT 16inPostProcessRunner); each bucket processes its slice sequentially insidepostprocess:guid. Additional processing also respectsmaxaddprocessed(default 25) per bucket. - Direct CLI:
update:postprocess <type>remains available for single-process runs outside tmux; tmux panes use the multiprocessing command only.
Testing
PHPUnit only (no Pest). Create tests: php artisan make:test --phpunit {name}
- In-memory SQLite (
DB_CONNECTION=testing) - App boot can hit
Settings::settingValue()viaCategorizationPipeline(app/Providers/CategorizationServiceProvider.php→app/Services/Categorization/CategorizationPipeline.php), even in focused controller tests - For isolated tests that bypass the normal app test DB setup, seed a minimal
settingstable before app bootstrap;categorizeforeignandcatwebdlare the minimum keys needed for this path, andtests/Feature/AdminContentControllerTest.phpshows the file-backed SQLite workaround whenphp artisan testwould otherwise fail during startup - Feature tests that render shared layouts or admin pages may need to clear
App\View\Composers\GlobalDataComposer::$resolvedData; seeresetGlobalComposerState()helpers intests/Feature/AdminContentControllerTest.php,AdminGroupControllerTest.php, andNzbAndRssAccessTest.php - All HTTP mocked - no real API calls
- Suites:
Install,Unit,Feature(alsotests/Integration/for live API tests, not in CI) - Use model factories; check for custom states first
- Mocks in
tests/Fixtures/,tests/mock_data/ - Test harnesses in
tests/Support/(e.g.,DatabaseTestCase,TestBinariesHarness) - PHPUnit 12 — use
#[Test]attributes ortestprefix naming
Project Conventions
Models (app/Models/)
- Casts in
casts()method, not$castsproperty - Foreign keys:
{table}_id(e.g.,groups_id) - Key:
Release,Video,TvEpisode,MovieInfo,UsenetGroup
API (app/Http/Controllers/Api/)
- v1: XML (newznab compat) -
ApiController.php - v2: JSON REST -
ApiV2Controller.php - RSS feeds are separate from
/api: editroutes/rss.php+App\Http\Controllers\RssController;/rss/*is mounted frombootstrap/app.phpandRssController::userCheck()validatesapi_token
Config
- App configs:
config/nntmux*.php,config/tmux.php,config/search.php - Never
env()outside config - useconfig('key') - Whenever you add or rename an
env()key — in any file, whether underconfig/*.phpor anywhere else in the codebase — you MUST also add it (with a sensible default and a short comment) to.env.example. Treat any new env setting without the matching.env.exampleentry as an incomplete task. - Runtime settings:
Settings::settingValue() - Laravel 13 route/middleware wiring lives in
bootstrap/app.php; use that file when adding route groups, aliases, or middleware (for example the/rssmount) - Custom global middleware in
app/Http/Middleware/:DegradeWhenRedisUnreachable(prepended; short-circuits requests when Redis is down viaStatusProbes),BlockAbusiveServices(blocks AIOStreams, Oracle Cloud, UsenetStreamer, Cloudflare WARP),NoCacheForAuthenticatedUsers(CDN cache busting),ContentSecurityPolicy,EnforceSessionToken,TrustedDevice2FAMiddleware - In Docker/Sail,
Makefileexports.envSEARCH_DRIVERasCOMPOSE_PROFILES, so only the matching Manticore/Elasticsearch service starts
Manticore releases_rt signed columns
- In Manticore,
integeris unsigned 32-bit; negative DB values (e.g.passwordstatus = -1,haspreview = -1) are stored as large positives (e.g.4294967295), sopasswordstatus <= 1filters never match. Thereleases_rtschema usesbigintforpasswordstatusandhaspreviewso values stay signed. - Changing column types requires dropping and recreating the RT table(s); Manticore cannot
ALTERattribute types in place.php artisan manticore:create-indexes --dropdrops and recreates every index defined inapp/Console/Commands/CreateManticoreIndexes.php(releases, predb, movies, tvshows, secondaries, etc.) as empty shells. Then repopulate what you use, e.g.php artisan nntmux:populate --manticore --allor at minimum--releases(and other index flags as needed). Prefer a maintenance window: runphp artisan tmux:stop(and pause queue workers that touch search) during drop/repopulate, thenphp artisan tmux:start. Optionally enable MySQL search fallback vianntmux.mysql_search_fallbackwhile indexes are empty.
Commands
- 80+ auto-registered in
app/Console/Commands/ - Create with
php artisan make:+--no-interaction - Docker/Sail convenience targets live in
Makefile; prefermake artisan cmd="...",make test filter=TestName,make pint, andmake npm-buildwhen working inside containers - This workspace may have cached routes under
bootstrap/cache/routes-*.php; after adding/changing routes, refresh withphp artisan route:cacheif a route appears missing
Admin Content
- Admin content ordering is scoped by
contenttype, not global: Homepage rows only reorder Homepage rows, Useful Links only reorder Useful Links - The admin list at
resources/views/admin/content/index.blade.phprenders one draggable table per content group and uses Alpine componentcontentToggle resources/js/alpine/components/content-toggle.jsis the integration point for admin content interactions: grouped drag ordering, enable/disable toggles, and delete confirmations all live there- Reorder requests go to
AdminContentController::reorder()and must include the exact ID set for onecontenttype; mixed-type or partial payloads are rejected - The ordinal field is intentionally hidden on
resources/views/admin/content/add.blade.php; the server assigns new items to the bottom of their own group inAdminContentController::nextBottomOrdinal() - Deleting content does not renumber remaining items; gaps in per-group ordinals are expected
Code Formatting & Quality
After every code change, run all of the following before considering a task done:
1. Apply style fixes to changed PHP files
./vendor/bin/pint --dirty # Format only changed files
If Pint changes files, keep those changes and rerun Pint until it reports clean output.
2. Check for static analysis errors
./vendor/bin/phpstan analyse --memory-limit=2G # Run PHPStan static analysis
3. Check for syntax / lint errors
find app -name "*.php" | xargs php -l # PHP syntax lint on all changed files
These steps are mandatory. Run them before considering any task done. Do not wait for the pre-commit hook to catch formatting or type errors. If PHPStan reports new errors introduced by your changes, fix them before finishing. If you add a PHPStan baseline entry, document why.
Pre-commit (CaptainHook)
Auto-runs: PHP lint, Composer lock validation, Pint formatting. Commit limits: 200 char subject, 72 char body.
When completing a task, stage newly created project files with Git. Do not stage temporary files or planning documents.
Key Directories
| Path | Purpose |
|---|---|
app/Services/TvProcessing/ |
TV metadata pipeline |
app/Services/Search/ |
Manticore/ES abstraction |
app/Services/NameFixing/ |
Release name correction (see README.md there) |
app/Services/Tmux/ |
Tmux orchestration |
app/Services/StatusProbes/ |
Service health probes feeding /status and degrade middleware |
app/Facades/ |
Static service accessors |
External APIs
Requires .env keys: TMDB, TVDB, TVMaze, Trakt, OMDB (TV/Movies); IGDB, GiantBomb, Steam (Games); AniList, AniDB (Anime); NNTP credentials.
Frontend
Blade + TailwindCSS v4 + Vite bundling. Run npm run build after changes.
- Livewire 3: Used only by the forum package (
resources/forum/livewire-tailwind/) and the vendored Spatie Pulse dashboard views (resources/views/vendor/pulse/). All application pages (auth, profile, admin, browse, etc.) are plain Blade + Alpine. - Alpine.js: CSP-safe build with component architecture in
resources/js/alpine/- Core components loaded eagerly in
alpine/index.js - Page-specific components lazy-loaded via
alpine/lazy-loader.js - Lazy-loaded pages must declare an
x-dataname that matches a key inalpine/lazy-loader.js, or the component JS will never load; example:resources/views/admin/content/index.blade.phpusesx-data="contentToggle"so delete/toggle handlers fromresources/js/alpine/components/content-toggle.jsare available - Stores in
alpine/stores/, components inalpine/components/
- Core components loaded eagerly in
- CSS: Main entry is
resources/css/app.css(importscsp-safe.cssfor component styles) - Vite entry points:
resources/js/app.js,resources/css/app.css,resources/forum/blade-tailwind/js/forum.js,resources/forum/blade-tailwind/css/forum.css
This structure ensures Content Security Policy (CSP) compliance by using Alpine.js CSP-safe build and keeping scripts and styles in external files.
===
=== foundation rules ===Laravel Boost Guidelines
The Laravel Boost guidelines are specifically curated by Laravel maintainers for this application. These guidelines should be followed closely to ensure the best experience when building Laravel applications.
Foundational Context
This application is a Laravel application running on PHP 8.5. You are an expert with the Laravel ecosystem. Always use the APIs that match the installed major version of each package — do not assume a version.
Before relying on a package's API, confirm its installed version:
- PHP packages: run
composer show --directto list direct dependencies with versions, orcomposer show <vendor/package>for a single package. - JS packages: check
package.jsonfor the installed versions.
Skills Activation
This project has domain-specific skills available in **/skills/**. You MUST activate the relevant skill whenever you work in that domain—don't wait until you're stuck.
Conventions
- You must follow all existing code conventions used in this application. When creating or editing a file, check sibling files for the correct structure, approach, and naming.
- Use descriptive names for variables and methods. For example,
isRegisteredForDiscounts, notdiscount(). - Check for existing components to reuse before writing a new one.
Verification Scripts
- Do not create verification scripts or tinker when tests cover that functionality and prove they work. Unit and feature tests are more important.
Application Structure & Architecture
- Stick to existing directory structure; don't create new base folders without approval.
- Do not change the application's dependencies without approval.
Frontend Bundling
- If the user doesn't see a frontend change reflected in the UI, it could mean they need to run
vendor/bin/sail npm run build,vendor/bin/sail npm run dev, orvendor/bin/sail composer run dev. Ask them.
Documentation Files
- You must only create documentation files if explicitly requested by the user.
Replies
- Be concise in your explanations - focus on what's important rather than explaining obvious details.
=== boost rules ===
Laravel Boost
Tools
- Laravel Boost is an MCP server with tools designed specifically for this application. Prefer Boost tools over manual alternatives like shell commands or file reads.
- Use
database-queryto run read-only queries against the database instead of writing raw SQL in tinker. - Use
database-schemato inspect table structure before writing migrations or models. - Use
get-absolute-urlto resolve the correct scheme, domain, and port for project URLs. Always use this before sharing a URL with the user. - Use
browser-logsto read browser logs, errors, and exceptions. Only recent logs are useful, ignore old entries.
Searching Documentation (IMPORTANT)
- Always use
search-docsbefore making code changes. Do not skip this step. It returns version-specific docs based on installed packages automatically. - Pass a
packagesarray to scope results when you know which packages are relevant. - Use multiple broad, topic-based queries:
['rate limiting', 'routing rate limiting', 'routing']. Expect the most relevant results first. - Do not add package names to queries because package info is already shared. Use
test resource table, notfilament 4 test resource table.
Search Syntax
- Use words for auto-stemmed AND logic:
rate limitmatches both "rate" AND "limit". - Use
"quoted phrases"for exact position matching:"infinite scroll"requires adjacent words in order. - Combine words and phrases for mixed queries:
middleware "rate limit". - Use multiple queries for OR logic:
queries=["authentication", "middleware"].
Project Rules
- This project keeps committed, area-grouped rules in
.ai/rules(settled decisions, non-obvious traps, standing constraints). Framework and package guidelines that only apply to specific paths (testing, frontend, components) also live there, under.ai/rules/boost— this is not just recorded decisions, it is load-bearing guidance you have not seen inline. Before you enter plan mode or create/edit any file, you MUST first: open @.ai/rules/index.md (it maps file globs to rule files), read every rule file whose globs cover the path(s) in scope, and rungrep -rin 'keyword' .ai/rulesto catch what a path match alone misses. Do not write code until you have read and are following every matching rule. - Record durable rules with
record-ruleso the next agent or teammate inherits them instead of working them out again. Pass aglob(e.g.app/Http/Controllers/**), a shorttitle, and a few-linenote. Always userecord-rule, never your native memory or notes tool — native memory is personal and session-scoped; only.ai/rulesis shared with the team and persists in the repo.
Artisan
- Run Artisan commands directly via the command line (e.g.,
vendor/bin/sail artisan route:list). Usevendor/bin/sail artisan listto discover available commands andvendor/bin/sail artisan [command] --helpto check parameters. - Inspect routes with
vendor/bin/sail artisan route:list. Filter with:--method=GET,--name=users,--path=api,--except-vendor,--only-vendor. - Read configuration values using dot notation:
vendor/bin/sail artisan config:show app.name,vendor/bin/sail artisan config:show database.default. Or read config files directly from theconfig/directory.
Tinker
- Execute PHP in app context for debugging and testing code. Do not create models without user approval, prefer tests with factories instead. Prefer existing Artisan commands over custom tinker code.
- Always use single quotes to prevent shell expansion:
vendor/bin/sail artisan tinker --execute 'Your::code();'- Double quotes for PHP strings inside:
vendor/bin/sail artisan tinker --execute 'User::where("active", true)->count();'
- Double quotes for PHP strings inside:
=== php rules ===
PHP
- Always use curly braces for control structures, even for single-line bodies.
- Use PHP 8 constructor property promotion:
public function __construct(public GitHub $github) { }. Do not leave empty zero-parameter__construct()methods unless the constructor is private. - Use explicit return type declarations and type hints for all method parameters:
function isAccessible(User $user, ?string $path = null): bool - Follow existing application Enum naming conventions.
- Prefer PHPDoc blocks over inline comments. Only add inline comments for exceptionally complex logic.
- Use array shape type definitions in PHPDoc blocks.
=== deployments rules ===
Deployment
- Laravel can be deployed using Laravel Cloud, which is the fastest way to deploy and scale production Laravel applications.
=== sail rules ===
Laravel Sail
- This project runs inside Laravel Sail's Docker containers. You MUST execute all commands through Sail.
- Start services using
vendor/bin/sail up -dand stop them withvendor/bin/sail stop. - Open the application in the browser by running
vendor/bin/sail open. - Always prefix PHP, Artisan, Composer, and Node commands with
vendor/bin/sail. Examples:- Run Artisan Commands:
vendor/bin/sail artisan migrate - Install Composer packages:
vendor/bin/sail composer install - Execute Node commands:
vendor/bin/sail npm run dev - Execute PHP scripts:
vendor/bin/sail php [script]
- Run Artisan Commands:
- View all available Sail commands by running
vendor/bin/sailwithout arguments.
=== tests rules ===
Test Enforcement
- Every change must be programmatically tested. Write a new test or update an existing test, then run the affected tests to make sure they pass.
- Run the minimum number of tests needed to ensure code quality and speed. Use
vendor/bin/sail artisan test --compactwith a specific filename or filter.
=== laravel/core rules ===
Do Things the Laravel Way
- Use
vendor/bin/sail artisan make:commands to create new files (i.e. migrations, controllers, models, etc.). You can list available Artisan commands usingvendor/bin/sail artisan listand check their parameters withvendor/bin/sail artisan [command] --help. - If you're creating a generic PHP class, use
vendor/bin/sail artisan make:class. - Pass
--no-interactionto all Artisan commands to ensure they work without user input. You should also pass the correct--optionsto ensure correct behavior.
Model Creation
- When creating new models, create useful factories and seeders for them too. Ask the user if they need any other things, using
vendor/bin/sail artisan make:model --helpto check the available options.
APIs & Eloquent Resources
- For APIs, default to using Eloquent API Resources and API versioning unless existing API routes do not, then you should follow existing application convention.
URL Generation
- When generating links to other pages, prefer named routes and the
route()function.
Testing
- When creating models for tests, use the factories for the models. Check if the factory has custom states that can be used before manually setting up the model.
- Faker: Use methods such as
$this->faker->word()orfake()->randomDigit(). Follow existing conventions whether to use$this->fakerorfake(). - When creating tests, make use of
vendor/bin/sail artisan make:test [options] {name}to create a feature test, and pass--unitto create a unit test. Most tests should be feature tests.
Vite Error
- If you receive an "Illuminate\Foundation\ViteException: Unable to locate file in Vite manifest" error, you can run
vendor/bin/sail npm run buildor ask the user to runvendor/bin/sail npm run devorvendor/bin/sail composer run dev.
=== livewire/core rules ===
Livewire
- Livewire allow to build dynamic, reactive interfaces in PHP without writing JavaScript.
- You can use Alpine.js for client-side interactions instead of JavaScript frameworks.
- Keep state server-side so the UI reflects it. Validate and authorize in actions as you would in HTTP requests.
=== pint/core rules ===
Laravel Pint Code Formatter
- If you have modified any PHP files, you must run
vendor/bin/sail bin pint --dirty --format agentbefore finalizing changes to ensure your code matches the project's expected style. - Do not run
vendor/bin/sail bin pint --test --format agent, simply runvendor/bin/sail bin pint --format agentto fix any formatting issues.
=== phpunit/core rules ===
PHPUnit
- This application uses PHPUnit for testing. All tests must be written as PHPUnit classes. Use
vendor/bin/sail artisan make:test --phpunit {name}to create a new test. - If you see a test using "Pest", convert it to PHPUnit.
- Every time a test has been updated, run that singular test.
- When the tests relating to your feature are passing, ask the user if they would like to also run the entire test suite to make sure everything is still passing.
- Tests should cover all happy paths, failure paths, and edge cases.
- You must not remove any tests or test files from the tests directory without approval. These are not temporary or helper files; these are core to the application.
Running Tests
- Run the minimal number of tests, using an appropriate filter, before finalizing.
- To run all tests:
vendor/bin/sail artisan test --compact. - To run all tests in a file:
vendor/bin/sail artisan test --compact tests/Feature/ExampleTest.php. - To filter on a particular test name:
vendor/bin/sail artisan test --compact --filter=testName(recommended after making a change to a related file).
=== revolution/laravel-boost-phpstorm-copilot/core rules ===
PhpStorm with GitHub Copilot Plugin
This package provides custom CodeEnvironment integration for PhpStorm with GitHub Copilot plugin with Laravel Boost. It enables PhpStorm users to leverage Laravel Boost's MCP (Model Context Protocol) server functionality.
Important: Project Path Verification
Before using Laravel Boost MCP tools in PhpStorm with GitHub Copilot plugin, verify that the project path in the global MCP configuration file matches your current project.
The MCP configuration file is stored system-wide at:
- macOS, Linux:
~/.config/github-copilot/intellij/mcp.json - Windows:
%LOCALAPPDATA%\github-copilot\intellij\mcp.json
If the project path in the MCP configuration does not match your current Laravel project, you must update it before using MCP tools:
php artisan boost:install --guidelines --skills --mcp --no-interactionThis command updates the MCP configuration file with the absolute path to your current Laravel project, ensuring MCP tools interact with the correct project.
When to Run boost:install
Run php artisan boost:install whenever you:
- Switch to a different Laravel project
- Clone or move your project to a new location
- Notice MCP tools are accessing the wrong project's data
Why This is Necessary
Unlike project-local MCP configurations, PhpStorm with GitHub Copilot plugin stores MCP server configurations in a system-wide location. This allows multiple projects to share the same MCP server registration, but requires updating the configuration when switching between projects to ensure the correct project path is used.