CtrlK
BlogDocsLog inGet started
Tessl Logo

onboarding

How to register user-facing setup steps (API keys, OAuth, connecting third-party services) for the sidebar setup checklist. Use when adding a feature that needs initial user configuration.

64

Quality

81%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Passed

No findings from the security scan

SKILL.md
Quality
Evals
Security

Quality

Content

82%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A lean, highly actionable policy skill: concrete code, exact API names, and file paths, with no filler. The main gaps are mild redundancy in the credential-handling rules and a dense shared-services section that would be better split into a reference file.

Suggestions

Consolidate the secure-credential-path guidance (currently spread across the Rule paragraph and the custom-setup-page paragraph) into one statement to remove redundancy and tighten the conciseness score.

Move the WORKSPACE_SERVICES detail (first-run/Infrastructure rendering rules, capability tagging) into a reference file and keep a one-line pointer in SKILL.md, improving progressive disclosure.

Add a short decision sequence or checklist (provider → connection exists? → OAuth store? → registerRequiredSecret) to make the branching credential-resolution rules easier to follow.

DimensionReasoningScore

Conciseness

The body is dense, project-specific policy with no padding about concepts Claude already knows — every paragraph carries rules Claude couldn't infer. It stays at 4 rather than 5 because of minor redundancy (the secure-credential-path rule is restated across the Rule and custom-setup-page paragraphs) and a few convoluted sentences like "Model onboarding around the logical connection outcome, not its individual fields" that could be tightened.

4 / 5

Actionability

The guidance is fully executable: a complete copy-paste TypeScript example with imports and an isComplete callback, exact API names (registerOnboardingStep, hasOAuthTokens, registerRequiredSecret, WORKSPACE_SERVICES, getOnboardingAppProfile, manage-file-storage), and real file paths for follow-up. This matches the anchor for copy-paste-ready code with specific examples covering the common cases.

5 / 5

Workflow Clarity

The core action (register an onboarding step) is unambiguous and demonstrated in code, and the decision rules (custom setup page criteria, WORKSPACE_SERVICES additions, app-specific capabilities) are individually clear. It sits at 4 rather than 5 because the skill interleaves several decision processes without explicit sequencing or checkpoints, and at 4 rather than 3 because every branch states what to do and what to avoid.

4 / 5

Progressive Disclosure

No bundle files exist (no references/, scripts/, or assets/), so everything lives in a well-sectioned ~90-line body with clear headers. The one external pointer ("See packages/core/docs/content/onboarding.md for method kinds and built-in steps") is well-signaled and one level deep, but the ~25-line WORKSPACE_SERVICES section is detailed inline where a reference file would keep SKILL.md a leaner overview — matching the good-structure-with-minor-gaps anchor 4.

4 / 5

Total

17

/

20

Passed

Description

75%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong, third-person description that explicitly covers both what the skill does and when to use it, with concrete parenthetical specifics. Its main limitation is trigger richness: one general 'Use when' clause and no synonyms like onboarding or first-run.

DimensionReasoningScore

Specificity

The description names the domain and several concrete specifics — "register user-facing setup steps (API keys, OAuth, connecting third-party services) for the sidebar setup checklist" — matching the anchor that lists several specific actions with minor coverage gaps. It falls short of a 5 because it describes one composite action (registering steps) rather than a comprehensive list of capabilities.

4 / 5

Completeness

Both parts are explicit: the what ("register user-facing setup steps ... for the sidebar setup checklist") and the when ("Use when adding a feature that needs initial user configuration"). The when clause is a single fairly general condition without additional concrete trigger phrases, matching anchor 4 ('when' could be more explicit or specific) rather than the fully-trigger-anchored 5.

4 / 5

Trigger Term Quality

Natural terms users would say are present: "API keys", "OAuth", "connecting third-party services", "setup checklist", "initial user configuration". Coverage is good but misses common synonyms and adjacent phrasings such as "onboarding", "credentials", "first-run", or "secrets", so it fits the good-but-not-comprehensive anchor rather than 5 and clearly above the sparse-keyword anchor 3.

4 / 5

Distinctiveness Conflict Risk

"sidebar setup checklist" scopes this to a distinct niche with clear triggers, but the credential territory ("API keys, OAuth") creates minor overlap risk with adjacent skills like the referenced `authentication` and `secrets` skills. That places it at mostly-distinct (4) rather than the minimal-conflict 5, and well above the generic anchors 2–3.

4 / 5

Total

16

/

20

Passed

Validation

81%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 13 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

metadata_version

'metadata.version' is missing

Warning

metadata_field

'metadata' should map string keys to string values

Warning

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

13

/

16

Passed

Repository
BuilderIO/agent-native
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.