Hacktoberfest 2026:维护者为十月标记出来的 issue,仍然开放、适合新手。 浏览 Hacktoberfest issue

create-solid (Solid 2 templates): SSR toggle missing for with-* variants, stale pnpm-lock after devtools edit, generated server.js blocks the [...404] chunk

未关闭
#92 0 条评论 0 个 reaction 已指派 0 人 在 GitHub 查看

还没有人认领这个 Issue。

评估

难度
5/5
预计耗时
一周以上
新手友好度
35/100
Issue 类型
缺陷
描述清晰度
基本清楚
活跃度
活跃
技术栈
typescript, vite

调研方向

Start with templates.json, the bundled fallback in dist/bin.mjs, and the generated server.js path used by the SSR toggle; compare them with dist/server/node.js and the fullstack template. Reproduce the listed scaffolding, frozen-install, build, and curl commands. Done means all solid-v2 with-* variants offer SSR, mutations leave package-manager metadata usable, and the [...404] asset is served correctly without unsafe path handling.

由索引模型根据 Issue 内容生成。

描述

Three defects in [email protected]'s Solid 2 (solid-v2) scaffolding, found while triaging two user reports of a fresh rc.9 project failing on Firebase App Hosting:

(a) SSR toggle is only offered for basic

templates.json (and the bundled fallback uo(iw, "basic", "basic", "with-tsrx")) sets ssrToggle: true only on basic. Scaffolding with-tailwindcss --solid never asks "Enable server-side rendering?", so the project keeps "start": "vite" — the dev server. Hosts that run npm run build then prune devDependencies and npm start (Firebase App Hosting does exactly this) fail with Could not resolve '@tailwindcss/vite', 'vitest/config', '@solidjs/vite-plugin'. The same user's basic project deployed fine only because he answered yes to SSR, which rewrites start to node server.js.

Every with-* variant in solid-v2 is basic plus one tool and contains the exact solid({ start: true marker the SSR rewrite (kw) keys on, so enabling ssrToggle for with-bootstrap, with-sass, with-tailwindcss, with-tanstack-router, with-tsrx, with-unocss, with-vitest-browser-mode should work with no other change (verified the marker is present in with-tailwindcss/vite.config.ts).

Proposed fix: set ssrToggle: true on the with-* entries (templates.json upstream + the bundled fallback), or derive it from the marker's presence at scaffold time.

(b) --devtools edits package.json but ships the template's pnpm-lock.yaml unchanged

Repro:

node dist/bin.mjs my-app with-tailwindcss --solid --js --devtools
cd my-app && pnpm install --frozen-lockfile
# ERR_PNPM_OUTDATED_LOCKFILE
#   specifiers in the lockfile don't match specifiers in package.json:
#   * 1 dependencies were added: @solidjs/start-devtools@^1.0.0-next.4

The unmodified template lockfiles are in sync (pnpm install --frozen-lockfile --lockfile-only passes in solid-v2/basic and solid-v2/with-tailwindcss). CI environments (App Hosting, GitHub Actions, Vercel, …) default to frozen installs, so every devtools-enabled project fails its first CI install until the user deletes pnpm-lock.yaml/pnpm-workspace.yaml by hand — which is what the reporter ended up doing ("I have to remove the yaml files").

Proposed fix: whenever create-solid mutates package.json (devtools add, SSR start rewrite, TS→JS conversion), delete pnpm-lock.yaml (and pnpm-workspace.yaml if the project is not going to use pnpm), or regenerate the lock when pnpm is the chosen package manager. The templates README already says the lockfile "can be safely removed once you clone a template".

(c) Generated SSR server.js refuses the [...404] route chunk

The server.js written by the SSR toggle guards static serving with:

if (url !== '/' && !url.includes('..')) {
  const content = readFileSync(path.resolve(__dirname, 'dist/client' + url.split('?')[0]));

The catch-all route src/routes/[...404].tsx compiles to dist/client/assets/_...404_-<hash>.js, whose URL contains ... The guard rejects it, the request falls through to handleRequest, which SSR-renders the 404 page as text/html with status 404. The browser rejects HTML as a module script, so on every direct load of a nonexistent URL (and on client navigation to one) the console shows

Hydration module preload failed; rendering boundary content on the client: TypeError: Failed to fetch dynamically imported module: …/assets/_...404_-Ctz1Phvb.js
TypeError: Failed to fetch dynamically imported module: …   (Safari: "Importing a module script failed.")

and the page shows the Error | Uncaught Client Exception banner. Reproduced locally:

node dist/bin.mjs repro basic --solid --ssr --ts --devtools=false
cd repro && npm i && npm run build && PORT=8080 node server.js
curl -i "http://localhost:8080/assets/_...404_-<hash>.js"   # 404 text/html

The server @solidjs/vite-plugin emits with start: { node: true } (dist/server/node.js) serves the same URL as 200 text/javascript: it decodes the pathname, rejects only dot-segments, then path.join(clientRoot, decoded) and requires file.startsWith(clientRoot + path.sep).

Also worth noting: server.js builds request.url as http://${req.headers.host}${req.url}. Behind a proxy that rewrites Host (App Hosting rewrites it to the Cloud Run *.a.run.app host; original is in X-Forwarded-Host) getRequestEvent().request.url points at a host the container cannot reach itself through, which is what broke the basic template's SSR-time fetch(new URL('/users.json', request.url)) in templates#310 (the render fails and the client sees the sanitized Error: Internal Server Error). The template side is tracked in the templates repo, but the scheme/host construction here is the other half.

Proposed fix: either

  1. drop the hand-rolled server.js and have the SSR toggle set start: { node: true } in vite.config plus "start": "node --env-file-if-exists=.env dist/server/node.js" (what the fullstack template already does), or
  2. keep server.js but replace the includes('..') guard with a containment check:
const clientRoot = path.resolve(__dirname, 'dist/client');
const file = path.resolve(clientRoot, '.' + decodeURIComponent(url.split('?')[0]));
if (url !== '/' && file.startsWith(clientRoot + path.sep)) { /* serve file */ }

and consider honouring X-Forwarded-Proto/X-Forwarded-Host when constructing the Request URL.

— filed by Claude via Cursor

主要语言
TypeScript
星标
79
派生
24
PR 合并指标
30 天内没有已合并 PR

环境准备

这个项目没有提供开发容器、Dockerfile 或贡献指南,环境需要你自己搭建:先看它的 README,通用步骤见我们的新手贡献指南。

从这里开始

  1. 先读完整个 Issue,再读项目的贡献指南。
  2. 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
  3. Fork 仓库,在一个分支上完成修改。
  4. 提交 Pull Request,并在描述里引用这个 Issue 编号。

solidjs-community/solid-cli 的其他 Issue

查看 solidjs-community/solid-cli 的全部 Issue

相似的 Issue

更多 TypeScript Issue

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。