# Cynaris PHP/MySQL demo release — 3 October 2026 ## Implemented - Five isolated, persistent product workspaces with 41 application screens, including five AI workbenches. - 15 AI workflows using the open-source Neuron AI PHP library and Groq. Each workflow creates a private draft; users can edit, review, delete and export it as a PDF using Dompdf. - Interactive Chart.js charts with accessible data tables, validated revenue CSV import, calculated summaries and saved report snapshots. - Admin account invitations, access grants, expiry, suspension, request approvals, contact enquiries, consented traffic, audit logs and AI token usage. Eleven admin screens include a Freepik/Magnific metadata search interface. - PHP-rendered marketing pages, per-page SEO metadata, public sitemap, product workflow explanations, demo guide and data-handling information. ## Product workflow catalogue | Product | Saved AI workflows | |---|---| | OS | Project delivery plan; CRM follow-up draft; operations review | | Analytics | Revenue briefing; data quality review; decision memo | | Mentor | Personal study plan; interview feedback; portfolio review | | Launch | Validation experiment; pitch narrative; customer interview guide | | Academy | Lesson tutor; practice quiz; learning pathway | ## API contracts All APIs live at `/api/index.php?route=...` and require JSON. Mutations require the CSRF token from `GET session` in `X-CSRF-Token`. - `GET/PUT state/{product}`: account-scoped workspace; PUT needs `state` and current `revision`. Conflicts return 409. - `POST ai/{product}`: quick question, optional `include_context`. Answer is returned but not stored. - `GET workflows/{product}`: workflow catalogue and latest 100 owned documents. - `POST workflows/{product}`: `workflow`, `brief`, optional `include_context`; generates and persists a draft. - `PUT workflows/{product}`: `id`, `revision`, `title`, `body`, `status` (draft/reviewed). - `DELETE workflows/{product}`: `id`; ownership required. - `GET /apps/export.php?product=...&id=...`: authenticated PDF download of the last saved document. - `POST admin/assets/search`: administrator-only `query`; returns provider metadata and licence labels, not downloaded assets. ## Limits and boundaries Demo records belong to one account. The application is not yet a full multi-organisation ERP, arbitrary data-warehouse BI system or accredited LMS. Analytics imports the documented 18-row INR revenue format. Email is not sent automatically. Generated suggestions do not execute business actions. Academy has three short courses and informal assessments. AI defaults to five requests per minute and 30 per day per account. Saved AI documents are capped at 100 per product. Context sharing is opt-in. Provider keys are server-only. No user-supplied URL is fetched by the AI workflow. ## Deployment Requires PHP 8.2+, MySQL 8+, PDO MySQL, cURL, mbstring, DOM and OpenSSL. Point the web root to `public/`; all configuration and vendor code remain outside it. Use the full private README in the deployment package. Node and Composer are not required on the hosting server when using the bundled release. ## Verified and remaining 71 automated HTTP checks and live Groq generation across all five products passed locally on PHP 8.5/MySQL 8.4. Production hosting deployment and its PHP 8.2 compatibility check remain. The supplied stock API credential returned 401, so no stock media has been downloaded or published. Full ERP/LMS integrations, SMTP, team collaboration and broad BI ingestion are future scope.