CtrlK
BlogDocsLog inGet started
Tessl Logo

sharing

Framework-level sharing and privacy for user-authored resources (dashboards, documents, forms, decks, etc.). Use when making a resource table ownable, wiring list/read/update access checks, or dropping the standard share dialog into a template.

65

Quality

82%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Passed

No findings from the security scan

SKILL.md
Quality
Evals
Security

Quality

Content

78%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A highly actionable, information-dense skill body with executable code for every workflow step and a useful debugging section for error recovery. Its weaknesses are length in a single monolithic file — detailed contracts and migration guidance inlined instead of split into reference files — and a couple of off-topic digressions that could be trimmed or extracted.

Suggestions

Split detailed material into one-level-deep reference files (e.g. references/share-surface.md for the UI contract, references/migration.md for the retrofit pattern) and keep SKILL.md as a concise overview with clearly signaled links.

Trim or extract the 'Make me an admin' paragraph and the 'Analytics (follow-up)' status note — they belong to authentication skill territory and a template tracker rather than this skill's core guidance.

Add an explicit verification checkpoint after registration (e.g. confirm list-resource-shares works or the resource appears under accessFilter) to complete the main workflow's feedback loop.

DimensionReasoningScore

Conciseness

The body is dense with project-specific knowledge Claude cannot know (ownableColumns, accessFilter semantics, registration flags) with no general-concept filler, but a few passages could be trimmed: the "Make me an admin" digression about auth hooks, the "Analytics (follow-up)" status note, and the flag-name backward-compatibility parenthetical. This matches 'efficient; minor instances of over-explanation that could be trimmed'; not 5 because those digressions are genuinely off-skill, not 3 because there is no padded filler of the anchor-3 kind.

4 / 5

Actionability

Copy-paste-ready, complete code blocks with imports cover every common case: schema definition with ownableColumns/createSharesTable, registerShareableResource, accessFilter query, assertAccess guard, owner-setting insert with the authentication check, and ShareButton/VisibilityBadge usage. The auto-mounted actions table and the 8-step migration checklist add fully executable guidance; nothing is pseudocode.

5 / 5

Workflow Clarity

Sections follow the build order (make ownable → filter reads → guard writes → set owner → drop in UI) and the migration pattern is an explicit numbered checklist; the Debugging section provides error-recovery feedback loops ("ForbiddenError from an action means the current user isn't owner / hasn't been shared", "check that the insert actually set owner_email"). Not 5 because the main creation flow has no explicit verify step after registration before moving on; not 3 because checkpoints and recovery guidance are present for the fragile steps.

4 / 5

Progressive Disclosure

The single ~290-line SKILL.md has no bundle files at all, and detailed material is inlined that clearly belongs in separate reference files — the 'Standard share surface' UI contract, the full actions table, the migration pattern, and the admin-role discussion. Internal structure and headers are good and external pointers are clearly signaled ("see the `authentication` skill", "`/docs/deployment#email-templates`"), so this is not a 2 (no unstructured wall), but 'content that should be separate is inline' caps it at 3; 4 would require the bulk of detail to live outside SKILL.md.

3 / 5

Total

16

/

20

Passed

Description

83%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong description with an explicit 'Use when' trigger clause, concrete actions, and natural vocabulary in third-person voice. Its main gaps are missing common synonyms (permissions, visibility, grants) and a slight overlap risk with a sibling authentication skill.

Suggestions

Add natural synonyms users might say — e.g. 'permissions', 'visibility', 'who can see/access' — to broaden trigger matching.

Name the share roles (viewer/editor/admin) or visibility levels briefly so the description's capability coverage is comprehensive rather than implying them.

DimensionReasoningScore

Specificity

The description lists several concrete actions — "making a resource table ownable, wiring list/read/update access checks, or dropping the standard share dialog into a template" — matching the anchor for several specific actions with minor gaps. Not 5 because coverage is incomplete (visibility levels, share roles, and the standard share actions are unmentioned); not 3 because it goes beyond 1-2 actions with concrete targets.

4 / 5

Completeness

It explicitly answers both what ("Framework-level sharing and privacy for user-authored resources (dashboards, documents, forms, decks, etc.)") and when ("Use when making a resource table ownable, wiring list/read/update access checks, or dropping the standard share dialog into a template") with concrete trigger phrases. This matches the top anchor exactly; the neighboring anchor 4 would require a weaker or less explicit 'when' clause.

5 / 5

Trigger Term Quality

Natural phrases a user would say are present — "sharing", "privacy", "access checks", "share dialog" — giving good keyword coverage. Not 5 because common synonyms such as "permissions", "visibility", or "grant" are missing; not 3 because more than some relevant keywords are covered, including natural task phrasings.

4 / 5

Distinctiveness Conflict Risk

Distinct triggers like "share dialog", "ownable", and "list/read/update access checks" carve a fairly clear niche with only minor overlap risk against a sibling authentication/permissions skill. Not 5 because "sharing and privacy" is broad enough to collide with a general permissions skill; not 3 because the framework-level framing and UI triggers make confusion unlikely.

4 / 5

Total

17

/

20

Passed

Validation

75%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 12 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

metadata_version

'metadata.version' is missing

Warning

metadata_field

'metadata' should map string keys to string values

Warning

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

referenced_paths_exist

Referenced path issues: 1 missing

Warning

Total

12

/

16

Passed

Repository
BuilderIO/agent-native
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.