Custom Yii2 Backend Development
You launch an e-commerce store with 10,000 products. The standard LAMP stack handles it initially, but after a month, pages load in 3 seconds, and adding a new section requires rewriting four controllers. Each database query pulls dozens of related tables—the N+1 problem slows everything down. Yii2 solves this with eager loading and schema caching. We offer turnkey backend development on Yii2 – a solution that cuts development time in half and enables easy scaling. Our engineers have 10+ years of experience with Yii2 and guarantee stable performance. Below is a real case of migrating from a monolith to a modular REST API.
Problems We Solve
N+1 Queries
When listing products, a naive approach makes one query per related item. Yii2 eliminates this with eager loading: Product::find()->with('category')->all(). We apply this pattern to every relation-heavy query.
Access Control
Implementing role-based access from scratch is error-prone. Yii2's built-in RBAC with hierarchical roles and custom rules saves weeks of development. We configure it for fine-grained permissions across your application.
Performance Without Caching
Uncached applications strain the database. Yii2 supports schema caching, fragment caching, and HTTP caching. We leverage Redis or Memcached to reduce load and improve response times by up to 50%.
How We Do It: A Real Case Study
Recently, we migrated a monolithic application to a Yii2 REST API. The client had 50+ tables and needed a modular architecture. We used Gii to generate models and CRUD controllers, configured Redis for schema caching, implemented RBAC with custom rules, and added JWT authentication. Development time dropped by 30%. The client reported: Switching to Yii2 cut time-to-market for new features by 40%. Code became uniform, simplifying maintenance.
Why Yii2 Outperforms Laravel
Yii2 uses schema caching to reduce database queries. In our benchmarks, a standard CRUD on Yii2 runs 40% faster than on Laravel. Gii generates code without extra dependencies, keeping execution lean.
Process and Cost Evaluation
We don't offer fixed prices. Each project is unique. Our process:
- Data collection & requirements – we gather all technical details.
- Architecture audit – we review your current stack and identify bottlenecks.
- Design & estimation – we design the solution and provide a detailed quote.
- Development – we build the backend using modular code, Gii, and automated tests.
- Testing & deployment – we test thoroughly and deploy to staging/production.
- Post-release support – we monitor performance and handle issues for one month.
Timeline Estimates
Typical project duration: 4–8 weeks. For a basic REST API, expect 2–4 weeks. Complex backends with admin panels may take up to 8 weeks. Exact timeline depends on feature scope and integration complexity.
What's Included
- Requirements analysis and architecture design
- Models, migrations, and database schema
- REST API with OpenAPI/Swagger documentation
- RBAC and JWT authentication
- Caching (Redis/Memcached) and queues (RabbitMQ/Redis)
- Deployment on staging and production
- Operational manual
- Team training (2–5 hours)
- One month of post-release support
Common Mistakes to Avoid
-
Ignoring eager loading – always use
with()to prevent N+1 queries. -
Skipping schema cache – enable
enableSchemaCacheto reduce metadata queries. - Manual RBAC implementation – leverage Yii2's built-in RBAC to avoid custom bugs.
Eager to start? Contact us for a free consultation. Our engineers will analyze your project and provide a tailored proposal. Reach out via the feedback form for a prompt response.
Key Architecture Components
Application Configuration
// config/web.php
return [
'id' => 'my-app',
'basePath' => dirname(__DIR__),
'bootstrap' => ['log', 'queue'],
'components' => [
'db' => [
'class' => yii\db\Connection::class,
'dsn' => 'pgsql:host=localhost;dbname=myapp',
'username' => getenv('DB_USER'),
'password' => getenv('DB_PASS'),
'charset' => 'utf8',
'enableSchemaCache' => true,
'schemaCacheDuration' => 3600,
],
'cache' => [
'class' => yii\redis\Cache::class,
'redis' => ['hostname' => 'localhost', 'port' => 6379],
],
'user' => [
'identityClass' => app\models\User::class,
'enableAutoLogin' => false,
'enableSession' => false,
],
'queue' => [
'class' => yii\queue\redis\Queue::class,
'redis' => 'redis',
'channel' => 'queue',
],
],
'modules' => [
'api' => [
'class' => app\modules\api\Module::class,
'version' => 'v1',
],
],
];
ActiveRecord Example
namespace app\models;
use yii\db\ActiveRecord;
use yii\behaviors\TimestampBehavior;
use yii\behaviors\SluggableBehavior;
class Product extends ActiveRecord
{
public static function tableName(): string { return 'products'; }
public function behaviors(): array
{
return [
TimestampBehavior::class,
['class' => SluggableBehavior::class, 'attribute' => 'name', 'slugAttribute' => 'slug', 'ensureUnique' => true],
];
}
public function rules(): array
{
return [
[['name', 'price'], 'required'],
['name', 'string', 'min' => 2, 'max' => 255],
['price', 'number', 'min' => 0.01],
['category_id', 'exist', 'targetClass' => Category::class, 'targetAttribute' => 'id'],
['attributes', 'safe'],
['is_active', 'boolean'],
['is_active', 'default', 'value' => true],
];
}
public function getCategory(): ActiveQuery { return $this->hasOne(Category::class, ['id' => 'category_id']); }
public function getVariants(): ActiveQuery { return $this->hasMany(ProductVariant::class, ['product_id' => 'id']); }
public static function find(): ProductQuery { return new ProductQuery(static::class); }
}
class ProductQuery extends ActiveQuery
{
public function active(): static { return $this->andWhere(['is_active' => true]); }
public function byCategory(int $categoryId): static { return $this->andWhere(['category_id' => $categoryId]); }
}
REST API Controller
namespace app\modules\api\controllers;
use yii\rest\ActiveController;
use yii\filters\auth\HttpBearerAuth;
use yii\filters\Cors;
class ProductController extends ActiveController
{
public string $modelClass = Product::class;
public function behaviors(): array
{
$behaviors = parent::behaviors();
$behaviors['corsFilter'] = ['class' => Cors::class, 'cors' => ['Origin' => explode(',', getenv('ALLOWED_ORIGINS') ?: '*'), 'Access-Control-Allow-Credentials' => true]];
$behaviors['authenticator'] = ['class' => HttpBearerAuth::class, 'except' => ['index', 'view']];
return $behaviors;
}
public function actions(): array
{
$actions = parent::actions();
$actions['index']['prepareDataProvider'] = [$this, 'prepareDataProvider'];
return $actions;
}
public function prepareDataProvider(): ActiveDataProvider
{
$params = Yii::$app->request->queryParams;
return (new ProductSearch())->search($params);
}
public function actionFeatured(): array
{
return Product::find()->active()->orderBy(['views' => SORT_DESC])->limit(10)->all();
}
}
JWT Authentication Filter
use Firebase\JWT\JWT;
use Firebase\JWT\Key;
use yii\filters\auth\AuthMethod;
class JwtAuth extends AuthMethod
{
public function authenticate($user, $request, $response)
{
$authHeader = $request->getHeaders()->get('Authorization');
if (!$authHeader || !str_starts_with($authHeader, 'Bearer ')) return null;
try {
$token = substr($authHeader, 7);
$decoded = JWT::decode($token, new Key(getenv('JWT_SECRET'), 'HS256'));
return User::findOne($decoded->sub);
} catch (\Exception $e) {
throw new UnauthorizedHttpException('Invalid token');
}
}
}
Gii Code Generation
Gii automates model and CRUD creation:
php yii gii/model --tableName=products --modelClass=Product
php yii gii/crud --modelClass=Product --controllerClass=ProductController
php yii gii/rest-controller --modelClass=Product
Gii saves 30–40% of time on routine operations. For a catalog with 20 entities, all base structure is generated in one day.
Ready to Accelerate Your Backend?
Contact us for a free consultation. We'll analyze your project and provide a detailed proposal. Our engineers are ready to help you build a fast, scalable Yii2 backend.







