CtrlK
BlogDocsLog inGet started
Tessl Logo

browser-extension-control

Build, edit, install or audit Chrome Web Store extensions in Agent Zero Browser.

64

Quality

80%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Low

Low-risk findings worth noting

Fix and improve this skill with Tessl

tessl review fix ./plugins/_browser/skills/browser-extension-control/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

78%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The body is a well-organized, agent-specific guide with concrete paths, working manifest examples, and validation-gated workflows for both creation and install. It is slightly below top marks on conciseness (one redundant manifest example, brief restatement of known MV3 concepts) and on actionability/workflow (the manual CRX download step lacks an executable command and error-recovery loops).

Suggestions

Make the manual CRX install executable: give the Chrome update-service URL pattern (e.g. https://clients2.google.com/service/update2/crx?...prodversion=...&x=id%3D<extension-id%22>) and the unzip command, or drop the manual path in favor of the puzzle-menu installer.

Replace the second full manifest example with just the `content_scripts`/`host_permissions` snippet to add to the base starter, cutting ~15 lines of duplication.

Add a short failure-handling note (JSON validation fails → fix manifest and re-validate; CRX download fails → fall back to the puzzle-menu URL installer) to close the feedback-loop gap.

DimensionReasoningScore

Conciseness

The body is lean and non-padded: every section carries agent-specific knowledge (paths, sandbox behavior, settings restart), and the manifest starters are tight. Two minor over-explanations keep it below the 5 anchor: the second manifest example largely duplicates the first (adding only `content_scripts`/`host_permissions`), and lines like "Prefer content scripts for page-local behavior and service workers for coordination" restate MV3 architecture Claude already knows.

4 / 5

Actionability

Most guidance is executable: concrete paths (`/a0/usr/browser-extensions/<slug>/`), a complete copy-paste manifest V3 starter, specific URL shapes for store links, and an explicit enable step. The gap is step 4 of the install flow — "download the CRX from Chrome's update service, extract the ZIP payload safely" gives no actual URL format or command, so the trickiest step is high-level only; this fits the 4 anchor ("concrete code or commands with minor gaps") rather than the 5 anchor's fully copy-paste-ready coverage.

4 / 5

Workflow Clarity

Both workflows are clearly sequenced with checkpoints: create validates JSON syntax and `manifest_version: 3` (step 5), install gates on user risk acceptance (steps 1 and 6), and a final Review Checklist covers the risky-operation validation. It falls short of the 5 anchor because there are no error-recovery/feedback loops (e.g. what to do when the manifest fails validation or the CRX download fails) and the manual CRX install path lacks a verification step for the extracted payload beyond "inspect manifest.json".

4 / 5

Progressive Disclosure

The skill is a single self-contained file with no references/, scripts/, or assets/ bundle (verified on disk), and everything fits comfortably inline at ~100 lines. Section headers (Operating Model, Safety First, Create New Extension, Install From Chrome Web Store, Review Checklist) make navigation trivial with nothing buried, matching the rubric's exception that a compact skill with well-organized sections and no need for external references scores 5.

5 / 5

Total

17

/

20

Passed

Description

75%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description is concise, specific, and clearly niched, listing four concrete lifecycle actions for a well-scoped domain. Its main weakness is the absence of an explicit "Use when..." clause inside the description text, which caps completeness; trigger-term coverage is good but a few natural synonyms are absent.

Suggestions

Append a trigger clause to the description, e.g. "Use when the user asks to build, modify, install, or audit a browser extension, mentions extension permissions or manifest.json, or gives a Chrome Web Store URL."

Fold the natural trigger phrases already present in the frontmatter `triggers` list ("build browser extension", "modify browser extension", "extension permissions") into the description itself so discovery depends on one field rather than a non-standard triggers key.

Add one or two common synonyms ("browser extension", ".crx", "manifest") to broaden natural-language matching without adding length.

DimensionReasoningScore

Specificity

The description lists four concrete actions — "Build, edit, install or audit" — against a precisely named domain ("Chrome Web Store extensions in Agent Zero Browser"), covering the full lifecycle the skill supports. This matches the 5 anchor (multiple specific concrete actions, comprehensive coverage) and exceeds the 4 anchor's "minor gaps in coverage" since the four verbs map to the skill's four workflows.

5 / 5

Completeness

The "what" is clearly answered (build/edit/install/audit extensions for Agent Zero Browser) but the description contains no "Use when..." clause or equivalent explicit trigger phrasing; per the judging guideline this caps completeness at 3. The separate frontmatter `triggers` list partially mitigates, but the description field itself has the "when" only weakly implied, keeping it at the 3 anchor rather than the 4 anchor's explicit-but-imperfect "when".

3 / 5

Trigger Term Quality

Strong natural keywords are present: "build", "install", "edit", "audit", "Chrome Web Store extensions", "browser" — phrases users would naturally say when requesting an extension. A few natural terms are missing from the description itself (e.g. "browser extension" as a plain phrase, "manifest", "extension permissions"), matching the 4 anchor "good keyword coverage; a few natural terms missing" rather than the 5 anchor's synonym/extension completeness.

4 / 5

Distinctiveness Conflict Risk

"Chrome Web Store extensions in Agent Zero Browser" carves out a clear niche tied to a specific product and plugin scope, with distinct verbs unlikely to fire for unrelated skills. Conflict risk is minimal — this fits the 5 anchor ("clear niche with distinct triggers") and is well above the 4 anchor's "minor overlap risk with closely related skills".

5 / 5

Total

17

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

15

/

16

Passed

Repository
agent0ai/agent-zero
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.