Skip to content

user

Manages the cross-tenant user identity: the read_users table holds each user’s email, displayName, global roles, emailVerified flag, and lifecycle status (active / restricted / deletionRequested / deleted). Because users exist above any individual tenant, the feature runs with r.systemScope() — membership and tenant-specific roles live in the tenant feature instead. Add this feature whenever your app needs a persistent, tenant-agnostic user record that auth and GDPR pipelines can reference.

From recipes-user-profile — the smallest working mount:

// user-profile Recipe — zeigt das App-Wiring für die Self-Service-
// Kontoseite: das bundled feature liefert Handler (change-email) +
// ProfileScreen-Komponente + i18n; die App deklariert den Screen als
// `custom` mit der __component-Convention und hängt ihn in die Nav.
//
// Client-seitig registriert die App die Komponente im Renderer-Mount:
// import { ProfileScreen, userProfileClient } from
// "@cosmicdrift/kumiko-bundled-features/user-profile/web";
// createKumikoApp({
// components: { UserProfileScreen: ProfileScreen },
// clientFeatures: [emailPasswordClient(), userProfileClient()],
// })
import { createAuthEmailPasswordFeature } from "@cosmicdrift/kumiko-bundled-features/auth-email-password";
import { authFoundationFeature } from "@cosmicdrift/kumiko-bundled-features/auth-foundation";
import { createComplianceProfilesFeature } from "@cosmicdrift/kumiko-bundled-features/compliance-profiles";
import { createConfigFeature } from "@cosmicdrift/kumiko-bundled-features/config";
import { createDataRetentionFeature } from "@cosmicdrift/kumiko-bundled-features/data-retention";
import { createFilesFeature } from "@cosmicdrift/kumiko-bundled-features/files";
import { createPersonalAccessTokensFeature } from "@cosmicdrift/kumiko-bundled-features/personal-access-tokens";
import { createSessionsFeature } from "@cosmicdrift/kumiko-bundled-features/sessions";
import { createTenantFeature } from "@cosmicdrift/kumiko-bundled-features/tenant";
import { createUserFeature } from "@cosmicdrift/kumiko-bundled-features/user";
import { createUserDataRightsFeature } from "@cosmicdrift/kumiko-bundled-features/user-data-rights";
import { createUserDataRightsDefaultsFeature } from "@cosmicdrift/kumiko-bundled-features/user-data-rights-defaults";
import { createUserProfileFeature } from "@cosmicdrift/kumiko-bundled-features/user-profile";
import { defineFeature, type FeatureDefinition } from "@cosmicdrift/kumiko-framework/engine";
export function createAccountFeature(): FeatureDefinition {
return defineFeature("account", (r) => {
r.describe(
"App-side wiring for the user-profile bundled feature: declares the " +
"profile screen (custom renderer, __component UserProfileScreen) and " +
"its nav entry.",
);
r.requires("user-profile");
r.screen({
id: "profile",
type: "custom",
renderer: { react: { __component: "UserProfileScreen" } },
});
r.nav({
id: "profile",
label: "account:nav.profile",
icon: "user",
screen: "account:screen:profile",
order: 90,
});
return {};
});
}
/** Volle Feature-Komposition inkl. der user-profile-Require-Kette
* (user-data-rights → data-retention + compliance-profiles + sessions). */
export function composeAccountApp(): FeatureDefinition[] {
return [
createConfigFeature(),
createUserFeature(),
createTenantFeature(),
createAuthEmailPasswordFeature(),
createDataRetentionFeature(),
createComplianceProfilesFeature(),
authFoundationFeature,
createPersonalAccessTokensFeature({ scopes: {} }),
createSessionsFeature(),
createFilesFeature(),
createUserDataRightsFeature(),
// registers the default export/erase hooks for core PII entities (user,
// fileRef, folder) so the GDPR boot gate (V3) is satisfied for the stack.
createUserDataRightsDefaultsFeature(),
createUserProfileFeature(),
createAccountFeature(),
];
}

📄 On GitHub: samples/recipes/user-profile/src/feature.ts

user feature preview

What this feature needs to run (Requires, top) and the write commands it provides (Provides, bottom).

flowchart TB
  n_user["user"]
  subgraph how_provides["Provides"]
    n_cmd_user_write_user_create(["create"])
    n_cmd_user_write_user_update(["update"])
  end
  n_user --> n_cmd_user_write_user_create
  n_user --> n_cmd_user_write_user_update

Provides — write commands this feature registers (dispatch them through the command bus):

Start with recipes-user-profile for a step-by-step walkthrough with runnable code and integration tests.

  • Requires: none
  • Activation: always on (not toggleable)