# XWUISuperSearch

One search surface over every store a workspace has. The provider fans a single
query out to as many backends as it likes and returns `record`, `page`, `file`, `message` and
`command` items in one result list; `data.sections` turns each source into a filter tab with a
count.

## When to use

- A global search that must span more than one backend and still read as one result list.
- A command palette, by including `command` items whose action runs through `provider.execute`.
- Any place the user knows what they want but not where it lives.

Every query hands the provider an `AbortSignal`, and the hub aborts the previous request on each
keystroke-driven reload: honour it or you will race stale results onto the screen.

## Configuration surface

The constructor is `new XWUISuperSearch(container, data, config)`. `data` is the state
you already hold; `config` is how the hub talks to your backend.

`config.provider` is the only integration point that matters:

- `list(query, signal)` -> `{ items, total?, nextCursor? }`. `query` carries
  `text`, `sectionId`, `cursor`, `limit` and `sort`; honour `signal`, because
  every new search, section switch or refresh aborts the in-flight request.
- `execute(request)` -> `{ message?, items?, refresh? }`, required by any entry
  in `config.actions`. An action with no `execute` fails with
  `XWUI_SUPER_ACTION_PROVIDER_REQUIRED` rather than silently doing nothing.
- `subscribe(listener)` is optional; when present the hub reloads on every
  push and unsubscribes on destroy.

The rest of `config`: `title` / `subtitle` / `className` for chrome;
`columns` (each `key` indexes the row built from the item's own fields plus its
`values` bag, so a custom column needs a matching `values` entry); `actions`
scoped `global` | `selection` | `item`, optionally `requiresConfirmation` and
`capability`; `confirmAction(action, items)` to gate confirmations (without it
a confirming action only emits `confirmationRequired`); `mountDetail` to own
the detail pane; `context` for the `XWUISuperContext` that authorizes
capabilities; plus `searchable`, `selectable`, `selectionMode`
(`single` | `multiple`), `autoLoad` (default true, loads on connect when a
provider exists), `refreshAfterAction` (default true), `pageSize` (default 50),
`density` (`compact` | `comfortable` | `spacious`) and a `labels` bag for every
piece of built-in copy.

Authorization is fail-closed: an action carrying a `capability` with no
`config.context` authorizer is **denied**, not allowed. Leave `capability` off
actions that genuinely need no permission.

`data` seeds and mirrors the view: `items`, `sections` (the tab strip),
`metrics` (the tile row), `query`, `activeSectionId`, `activeItemId`,
`selectedIds`, `loading`, `loadingMore`, `actionPendingId`, `error`, `total`,
`nextCursor` and `lastActionMessage`. Omit `columns` and the table falls back to
Title / Status / Updated.

## Search

Federated, provider-backed search across records, pages, files, messages, and commands.

```example
file: examples/BasicUsage.ts
html: examples/BasicUsage.html
title: Search
description: Federated, provider-backed search across records, pages, files, messages, and commands.
```

```api
```
