Blog

Coldbox Legacy App Demo

Brad Wood January 18, 2016

Spread the word

Brad Wood

January 18, 2016

Spread the word


Share your thoughts

There are a lot of people out there in the CFML world managing legacy codebases.  Some of them use frameworks that are no longer maintained, and many  use no framework at all.  A common question that I get is whether an app can be slowly converted over to  ColdBox without having to rewrite everything at once.  The answer is YES!  ColdBox will comfortably live alongside your legacy code, giving you the chance to slowly convert it over as you get the chance.  

Since this has come up at conferences and in the CFML Slack team so often I created a demo app that shows legacy pages living alongside MVC as well as some tricks to even keep you old files in the URL even though the requests are being routed through a modern MVC framework.  This can be important for companies dealing with a lot of bookmarked pages out there.

The code is on GitHub here:

https://github.com/bdw429s/coldbox-legacy-app-demo

 To get this working sample app  up and running literally in seconds, even on a computer with no server installed, just grab CommandBox and run the following commands from the interactive shell:

mkdir coldbox-legacy-app-demo --cd
install bdw429s/coldbox-legacy-app-demo
server start

In a few seconds a browser window will open and you can click around through the menu items, reading the descriptions on each page that details how it works.  Then peruse through the small codebase to see how everything is set up.

There's many ways to set up ColdBox MVC inside your legacy application, and hopefully this sample app will give you some ideas and understanding to get underway.

 

Add Your Comment

Recent Entries

BoxLang 1.17 Series Part 4 : WriteDump Enhanced!

BoxLang 1.17 Series Part 4 : WriteDump Enhanced!

You call writeDump() on an ORM entity or a very rich class graph . The browser locks up. Thirty seconds later you get a page with forty thousand rows on it, you scroll for a while, you give up, and you go edit your code to dump a sub-key instead. Or worse, you crash the server.

Luis Majano
Luis Majano
September 11, 2026
BoxLang AI 3.4 Blog Series Part 4 : Locking Down Prompt Injection

BoxLang AI 3.4 Blog Series Part 4 : Locking Down Prompt Injection

LLM applications face a class of attack traditional input validation was never built for: prompt injection. An attacker embeds instructions in user input, a retrieved document, a web page your tool fetched, or an MCP result, trying to override your system prompt, exfiltrate data, or hijack a tool call. BoxLang AI 3.4.0 ships four layered, configurable defenses against exactly this, plus one more that's on unconditionally.

Luis Majano
Luis Majano
September 11, 2026