CtrlK
BlogDocsLog inGet started
Tessl Logo

cx-platform-admin

Use this skill when the user asks "who has access", "audit permissions", "check user roles", "list API keys", "review access controls", "rotate API keys", "create API key", "delete expired keys", "send data keys", "IP allowlist", "IP access restrictions", "check IP whitelist", "add user", "deactivate user", "manage team groups", "user permissions", "role-based access", "manage scopes", "system roles", "API key admin", "team member keys", "group membership", or wants to audit, manage, or configure access controls for a Coralogix account.

69

Quality

87%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Passed

No findings from the security scan

SKILL.md
Quality
Evals
Security

Quality

Content

82%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A highly actionable, well-structured skill body: complete command coverage, executable audit and rotation workflows, and explicit destructive-operation safety guidance with verification steps. The main improvement opportunities are de-duplicating the Safety Callouts/Key Principles sections, adding error-recovery guidance to the rotation workflow, and splitting the full command reference into a separate reference file.

DimensionReasoningScore

Conciseness

The body is mostly lean — command tables, short workflows, jq one-liners — with almost no explanation of concepts Claude already knows. It falls short of anchor 5 due to redundancy: the 'Safety Callouts' section restates the rotation WARNING ('Deleting API keys breaks any integration using that key'), and 'Key Principles' re-summarizes guidance already given in the rotation workflow and audit steps.

4 / 5

Actionability

Every section gives copy-paste-ready commands: complete command tables for all four resource families, executable bash with `-o json` and jq filters for each audit step, and a concrete six-step rotation sequence. Specific examples cover the common cases (auditing, rotation, user deactivation) and match the anchor-5 'fully executable, copy-paste ready' example.

5 / 5

Workflow Clarity

Both workflows have clear, ordered steps with concrete commands, and the rotation workflow includes an explicit verification checkpoint ('Deploy the new key → Verify the new key works → Delete the old key'), so the destructive-operation validation cap is not triggered. It sits below anchor 5 because there are no error-recovery/feedback loops (e.g., what to do if verification fails) and audit Step 6 ('Produce a summary: which users have admin roles...') states intent without an executable step.

4 / 5

Progressive Disclosure

No bundle files exist (no references/, scripts/, or assets/), and the body is well-organized with clear section headers, a sensible overview, and a single non-broken cross-skill pointer (cx-cost-optimization). It misses anchor 5 because the full CLI command reference — roughly 60 lines of tables — is inlined in SKILL.md where a leaner overview plus a references/ command file would better match the clear-overview-with-one-level-references ideal; at ~190 lines the body sits above the under-50-line simple-skill case.

4 / 5

Total

17

/

20

Passed

Description

86%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong, trigger-rich description with excellent natural-language keyword coverage and an explicit 'Use when...' clause. Its one weakness is that the capability statement ('audit, manage, or configure access controls') is generic — the concrete scope is conveyed only through the trigger-phrase list rather than an explicit enumeration of what the skill does.

DimensionReasoningScore

Specificity

The description names the domain and many concrete actions via quoted phrases ("rotate API keys", "create API key", "delete expired keys", "manage team groups", "IP allowlist"), but the actual capability statement — "audit, manage, or configure access controls for a Coralogix account" — is thin and generic compared to the actions implied by the trigger list. It sits between anchor 3 and 5: several specific actions are present, but the 'what' enumeration is carried by trigger phrases rather than explicit capability verbs, leaving minor gaps.

4 / 5

Completeness

Both parts are present: an explicit "Use this skill when the user asks..." when-clause and a what-clause ("audit, manage, or configure access controls for a Coralogix account"). It falls short of anchor 5 because the what-statement is generic — the concrete capabilities (key management, roles, users, groups, IP restrictions) appear only as trigger keywords, not as explicit capability statements like the anchor example's 'Extract text and tables from PDF files, fill forms, merge documents'.

4 / 5

Trigger Term Quality

The description enumerates ~20 natural phrases users would actually say ("who has access", "audit permissions", "check user roles", "list API keys", "check IP whitelist", "add user", "deactivate user") plus synonym variants (allowlist/whitelist, API keys/data keys). This matches the anchor-5 comprehensive coverage including synonyms; it does not miss common variations in the IAM-admin space.

5 / 5

Distinctiveness Conflict Risk

The description is anchored to a clear niche — access administration for a Coralogix account — with IAM-specific triggers (API keys, scopes, system roles, IP allowlist) that few other skills would claim. Minor theoretical overlap exists with a generic 'cost optimization' sibling it cross-references, but the trigger phrases here are distinct and specific, matching the clear-niche anchor.

5 / 5

Total

18

/

20

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
coralogix/cx-cli
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.