Extension Object Storage

by caffeinelabs362f51ae96f0No license2 starsListed Oct 8, 2026Updated Oct 8, 2026Repository updated today

General file/object storage, such as for images, videos, files, documents and other bulk data. Perfect fit for image galleries, video galleries, and other file or object management. Supports large files beyond IC limit, with browser-cached HTTP URL access.

AI-generated overview

Adds off-chain file and object storage with on-chain references to Caffeine AI Motoko canisters.

What it does
This skill documents how to add off-chain file and object storage to a Caffeine AI application, storing file content externally while keeping references on-chain. It covers the required backend mops dependency, the MixinObjectStorage mixin, and use of the Storage.ExternalBlob type for file fields. It also describes the frontend @caffeineai/object-storage package, including uploading, displaying, downloading, and file-type detection. It includes setup verification and a troubleshooting table for common upload errors.
When to use it
Use it when building a Caffeine AI app that needs to store or serve images, videos, documents, or other bulk files. It is suited to image galleries, video galleries, and similar file or object management features. It also helps when diagnosing 403 Forbidden upload errors tied to missing storage setup.
Requirements
Requires a Caffeine AI Motoko backend with the caffeineai-object-storage mops dependency and the @caffeineai/object-storage npm package on the frontend. The skill is instructions only and ships no scripts.

Object Storage

Object storage extension for Caffeine AI.

Overview

This skill adds off-chain file/object storage with on-chain references. The MixinObjectStorage mixin provides infrastructure for file operations; you track uploaded files in your own data structures using Storage.ExternalBlob.

Required Setup Checklist

All four steps are mandatory. Skipping any one causes 403 Forbidden: Invalid payload at upload time.

  1. mops dependency — add caffeineai-object-storage to mops.toml under [dependencies].
  2. Mixin invocation — include MixinObjectStorage() in main.mo (imported from "mo:caffeineai-object-storage/Mixin").
  3. Storage.ExternalBlob types — every data field that represents a file MUST use Storage.ExternalBlob, never Text.
  4. Frontend npm package — @caffeineai/object-storage installed and ExternalBlob.fromBytes(bytes, file.type, file.name) used at the call site.

CRITICAL: The frontend package (@caffeineai/object-storage) does NOT work without the backend mops package (caffeineai-object-storage). Installing only the npm package and not the mops package causes silent upload failures (403 from the storage gateway). You MUST install both together.

Backend

File content is stored off-chain. The backend manages references to external files using the Storage.ExternalBlob type from mo:caffeineai-object-storage/Storage. The frontend handles the actual upload/download; the backend only stores the reference.

CRITICAL: ANY data field that represents a file, image, photo, document, or media MUST use Storage.ExternalBlob as its type -- NEVER Text. Using Text breaks the upload/download proxy. Method parameters that accept file uploads MUST also use Storage.ExternalBlob, not Text.

Correct:

blob : Storage.ExternalBlob

Wrong:

blobId : TextimageUrl : TextfileRef : Text

Module API

The only type you use from mo:caffeineai-object-storage/Storage is ExternalBlob (which is Blob). All other functions in Storage.mo are internal infrastructure used by MixinObjectStorage -- do not call them directly.

Setup in main.mo

include MixinObjectStorage() MUST be placed in main.mo, not in a custom mixin file. Your own file-tracking logic goes in a separate mixin.

motoko
import MixinObjectStorage "mo:caffeineai-object-storage/Mixin";import Storage "mo:caffeineai-object-storage/Storage";
actor {  include MixinObjectStorage();
  // Track file references  type Data = {    id : Text;    blob : Storage.ExternalBlob;    name : Text;    // other metadata  };};

Wrong: Do NOT Implement Storage Methods Yourself

NEVER create your own implementation of _immutableObjectStorageCreateCertificate or any other _immutableObjectStorage* method. These are platform-reserved method names provided exclusively by the MixinObjectStorage mixin from the mops package. Hand-written implementations produce wrong return types and cause 403 Forbidden: Invalid payload at upload time.

Wrong — inline stub in main.mo:

<!-- motoko-check:skip -->
motoko
// WRONG: Do not write this yourselfpublic shared func _immutableObjectStorageCreateCertificate(fileHash : Text) : async Blob {  CertifiedData.set(Blob.fromArray(hashBytes));  Blob.fromArray([])};

Wrong — custom mixin file mimicking the platform shape:

motoko
// WRONG: Do not create src/backend/mixins/object-storage-api.moimport ObjectStorageMixin "mixins/object-storage-api";include ObjectStorageMixin();

The correct import path is ALWAYS "mo:caffeineai-object-storage/Mixin" — a mops package, never a relative path. Any relative import like "mixins/object-storage-api" or "./ObjectStorage" is wrong.

The correct signature produced by the platform mixin is:

_immutableObjectStorageCreateCertificate : (blobHash : Text) -> async record { method : Text; blob_hash : Text }

Any other return type (Blob, (), Text, etc.) will fail gateway validation.

Frontend

Backend Blob fields are represented as ExternalBlob on the frontend.

typescript
import { ExternalBlob } from "@caffeineai/object-storage";import type { FileRecord } from "@caffeineai/object-storage";

ExternalBlob API

typescript
class ExternalBlob {  getBytes(): Promise<Uint8Array<ArrayBuffer>>;  getDirectURL(): string;  static fromURL(url: string): ExternalBlob;  static fromBytes(    blob: Uint8Array<ArrayBuffer>,    contentType?: string,    filename?: string,  ): ExternalBlob;  withUploadProgress(onProgress: (percentage: number) => void): ExternalBlob;}

Uploading Files

Pass the browser File type and name into fromBytes so the gateway blob tree stores Content-Type and Content-Disposition (original filename). Also pass file.name to the backend so app records keep the filename for lists and UI.

typescript
const handleUpload = async (file: File) => {  const bytes = new Uint8Array(await file.arrayBuffer());  const blob = ExternalBlob.fromBytes(bytes, file.type, file.name).withUploadProgress((pct) => {    setProgress(pct);  });
  await actor.uploadFile(file.name, blob);};

Gateway GET/HEAD responses echo the stored filename via Content-Disposition. Keep the backend filename field for queries and display without hitting the gateway.

Displaying Files

Use getDirectURL() for inline display (images, videos). This returns an opaque proxy URL -- it has no file extension, so never inspect the URL to determine file type.

typescript
<img src={record.blob.getDirectURL()} alt={record.filename} />

File Type Detection

CRITICAL: Never detect file types by inspecting the URL from getDirectURL(). These are opaque proxy URLs with no extension. Instead use the filename field from the backend record:

typescript
const isImage = (filename: string) =>  /\.(jpg|jpeg|png|gif|webp|svg|bmp|ico)$/i.test(filename);
// Conditional rendering{isImage(record.filename) ? (  <img src={record.blob.getDirectURL()} alt={record.filename} />) : (  <div>{record.filename}</div>)}

If the backend also returns a mimeType field, prefer that:

typescript
const isImage = (mimeType?: string) => mimeType?.startsWith("image/");

Downloading Files

For downloads with the original filename, use getBytes() to create a downloadable link:

typescript
const handleDownload = async (record: FileRecord) => {  const bytes = await record.blob.getBytes();  const blob = new Blob([bytes]);  const url = URL.createObjectURL(blob);  const a = document.createElement("a");  a.href = url;  a.download = record.filename;  document.body.appendChild(a);  a.click();  document.body.removeChild(a);  URL.revokeObjectURL(url);};

Use getDirectURL() for inline display, getBytes() for save-as downloads.

Summary

Use caseMethodNotes
Display image/videoblob.getDirectURL()Streaming, cached
Download with filenameblob.getBytes()Wrap in Blob + anchor
Upload from browserExternalBlob.fromBytes(bytes, file.type, file.name)MIME + filename in gateway headers
Detect file typefilename or mimeType fieldNEVER inspect the URL

Verifying the Setup

Confirm the backend has the mops dependency installed. Check src/backend/mops.toml:

toml
[dependencies]caffeineai-object-storage = "0.1.2"

If caffeineai-object-storage is missing from [dependencies], object storage will not work regardless of what the frontend does. Add it, run mops install, and rebuild.

Troubleshooting

ErrorCauseFix
403 Forbidden: Invalid payload on PUT /v1/blob-tree/Backend canister missing _immutableObjectStorageCreateCertificate or returning wrong typeInstall caffeineai-object-storage in mops.toml, add include MixinObjectStorage() in main.mo, redeploy
403 Forbidden: Invalid payload (all files)@caffeineai/object-storage npm installed but caffeineai-object-storage mops NOT installedAdd the mops dependency and rebuild backend
Method exists but still 403Hand-written stub returns wrong type (e.g. Blob or () instead of record { method; blob_hash })Remove the custom implementation, use the platform mixin instead
Forbidden: Owner does not have an account with the cashierCashier registration issue (unrelated to this skill)Redeploy the backend canister to trigger self-healing registration

Source and attribution

Source:caffeinelabs/skillsinskills/extension-object-storageat commit362f51a

License: No license

Content belongs to its original authors. SourceWeft indexes it from a public repository.

Report or request removal