CtrlK
BlogDocsLog inGet started
Tessl Logo

1password

Set up op CLI, sign in, and read or inject secrets.

59

Quality

70%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

Fix and improve this skill with Tessl

tessl review fix ./optional-skills/security/1password/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

82%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The body is an efficient, highly actionable guide with executable commands for every common op operation and clear references one level deep. It is held just below top marks by a stray version-number note and a lack of an explicit validation checklist format.

DimensionReasoningScore

Conciseness

The body is lean and code-heavy, assuming Claude's competence with no padding about what 1Password is; the only minor trim is the CLI v2.18.0+ version note outside a deprecated section, keeping it at 4 rather than 5.

4 / 5

Actionability

It provides copy-paste-ready commands across install (brew/winget), read, OTP, inject, and run, plus a complete executable tmux session script covering the common cases.

5 / 5

Workflow Clarity

Setup is a numbered sequence with explicit verification (`op --version`, `op whoami`) and a Guardrails feedback loop for "account is not signed in"; it falls short of 5 because checkpoints are not framed as an explicit validate→fix→retry checklist.

4 / 5

Progressive Disclosure

SKILL.md is a clear overview with well-signaled one-level-deep references (references/get-started.md, references/cli-examples.md, both real files) and a References list; minor organization gaps from slight duplication between inline Common Operations and cli-examples.md keep it at 4.

4 / 5

Total

17

/

20

Passed

Description

58%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description is specific and action-oriented but lacks an explicit "Use when..." trigger clause and the natural "1Password" keyword, capping completeness and trigger-term quality. It is reasonably distinctive within the secrets-management niche.

Suggestions

Add a "Use when..." clause naming concrete triggers, e.g. "Use when the user wants to manage secrets via 1Password instead of plaintext env vars or files."

Include the natural brand term "1Password" alongside "op CLI" so users who say "1Password" trigger this skill.

Mention OTP retrieval (`op read ...?attribute=otp`) and `op run` to push specificity toward comprehensive coverage.

DimensionReasoningScore

Specificity

"Set up op CLI, sign in, and read or inject secrets" names the domain plus several concrete actions (setup, sign-in, read, inject), comparable to the 4-anchor example; not a 5 because coverage omits other op verbs like OTP/run.

4 / 5

Completeness

It gives a clear "what" (set up, sign in, read/inject secrets) but has no "Use when..." clause or equivalent trigger guidance, so per the judging guidelines completeness is capped at 3.

3 / 5

Trigger Term Quality

It includes relevant keywords ("op CLI", "secrets", "sign in", "inject") but omits the most natural user term "1Password" and common synonyms, matching the 3-anchor of having some keywords with missing variations.

3 / 5

Distinctiveness Conflict Risk

Being tied to "op CLI" makes it mostly distinct with only minor overlap risk from the broad term "secrets" against other secret-management skills, fitting the 4-anchor rather than the fully-niche 5-anchor.

4 / 5

Total

14

/

20

Passed

Validation

81%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation13 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

metadata_version

'metadata.version' is missing

Warning

metadata_field

'metadata' should map string keys to string values

Warning

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

13

/

16

Passed

Repository
NousResearch/hermes-agent
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.