Cloud sources¶
Open Open from cloud in the viewer to choose a source. On a hosted deployment with vendor sign-in enabled, select Sign in beside Autodesk, Dropbox or OneDrive. Complete the vendor's account selection and consent screen, then return to IFClite to browse and load files. End users do not enter access tokens, client IDs or app secrets.
Click a connected source's name to expand its browser. Star a provider to pin it above other sources; the first connected pinned provider opens automatically when the panel returns. Provider pins stay in this browser. Favorite folders and files remain scoped to the signed-in account and appear above the sources, with favorite folders also available at the top of their file area.
A Load batch appears in Activity while source files download. Cancel stops that batch's remaining downloads; files already sent for loading are kept. The row reports Partial when cancellation or a download failure follows successful dispatches, Failed when every download fails, and Cancelled when cancelled before any dispatch. Completed means all files were sent to the model loader; each model's loading row reports its later parse and geometry outcome.
Back from a favorite shortcut returns to the source overview after leaving its file area. Expand the source's name to browse or search other projects. When entering through the project list, Back returns to that list; personal drives skip the redundant single-account selection.
Use Find a model across folders at a provider's root to search files before opening a folder. Search uses the vendor search API when available and otherwise searches listed file names without downloading models. It follows accessible project and file pages; Continue searching fetches further results rather than silently truncating them. Sources that can only discover projects search their known projects; use the separate project search or URL field to discover others. Folder search still searches the selected project. File details show provider metadata before import; IFClite does not fabricate model thumbnails or fetch geometry in the background.
Dropbox reads the signed-in account's files. OneDrive reads the signed-in user's own drive, for either a personal Microsoft account or a work/school account whose administrator permits consent. Hosted OneDrive does not browse other SharePoint sites or document libraries. Autodesk lists only projects and exchanges that the signed-in account can access; a successful sign-in with an empty list means there are no accessible projects in that source. Tenant administrators may need to approve an application before users can access their organisation's data.
IFClite requests read access. Cloud credentials remain on the backend, in a session identified by a secure HttpOnly cookie. Files download through the gateway; vendor access tokens and signed download URLs are not sent to the viewer. Sign out ends the IFClite cloud session. It does not sign the user out of the vendor's other applications.
Hosted imports pass model bytes through IFClite services. Native Forma and Data Exchange resources are converted on the server before loading in the browser; Data Exchange uses the configured Windows worker. See Privacy for the data flow and temporary artifact handling.
If the browser blocks the sign-in popup, IFClite continues sign-in in the current tab and returns to the previous viewer route. This reloads the viewer; save local work before signing in with a popup blocker enabled. Only an expiring transaction state and return location are kept in session storage, and they are removed when the viewer resumes. Closing a popup may leave the attempt waiting because browser isolation prevents reliable detection; use Cancel sign-in or wait for the timeout before trying again.
Deployment administrators configure the vendor applications on the cloud gateway and enable VITE_CLOUD_HOSTED=true for the viewer build. The viewer must proxy /api/cloud/dropbox/* and /api/cloud/msgraph/* to the configured gateway on the same public origin. Register the exact /api/cloud/{vendor}/callback URLs with the vendors and serve the matching /oauth/{vendor}/callback static pages. Follow the gateway deployment instructions. Autodesk uses its separate VITE_AUTODESK_HOSTED=true gateway configuration.
The cloud session ends when the gateway restarts. Reconnect if IFClite reports that it expired. Autodesk refreshes its gateway session before Sign in, Sign out and other mutations, so idle expiry or a restart does not require reloading the viewer to reconnect or sign out. Unconfigured sources explain that an administrator needs to enable the application. Failed sign-out keeps the account visible so users can retry.
Self-hosted deployments without VITE_CLOUD_HOSTED=true retain the direct SDK sign-in setup described in the Dropbox package and Microsoft Graph package. Dalux currently uses the vendor's API credentials; hosted OAuth for Dropbox and Microsoft does not change that source.