CtrlK
BlogDocsLog inGet started
Tessl Logo

box-automation

Automate Box cloud storage operations including file upload/download, search, folder management, sharing, collaborations, and metadata queries via Rube MCP (Composio). Always search tools first for current schemas.

75

2.93x
Quality

64%

Does it follow best practices?

Impact

97%

2.93x

Average score across 3 eval scenarios

SecuritybySnyk

Low

Low-risk findings worth noting

Fix and improve this skill with Tessl

tessl review fix ./plugins/all-skills/skills/box-automation/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

57%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A well-structured, information-dense reference that is genuinely actionable for driving Box MCP tools, held back by redundancy between workflow sections and the Known Pitfalls section, missing validation checkpoints around destructive operations, and a monolithic single-file layout with no progressive disclosure. It reads as a flattened toolkit reference rather than a curated skill overview.

Suggestions

Add explicit validation checkpoints around destructive operations: before BOX_DELETE_FOLDER / BOX_PERMANENTLY_REMOVE_FOLDER, list folder contents and confirm scope; after deletion, verify the item is trashed or gone.

Deduplicate content: fold the "Known Pitfalls" ID-format, pagination, and nested-parameter entries into their workflow sections (or vice versa) and trim the Quick Reference table to tasks not already sequenced above.

Split the five detailed workflow sections into one-level-deep reference files (e.g., references/workflows.md, references/quick-reference.md), keeping SKILL.md as a concise overview with setup, common patterns, and clearly signaled links.

DimensionReasoningScore

Conciseness

The body is dense and mostly efficient (tool sequences, parameter lists, pitfalls), but the "Known Pitfalls" section substantially duplicates per-workflow Pitfalls (ID formats, pagination, nested double-underscore parameters each appear twice), and the Quick Reference table repeats the workflow sections, so it could be meaningfully tightened.

3 / 5

Actionability

Concrete guidance throughout: exact tool slugs, parameter names, value formats ("use \"0\" for root folder"), URL-to-ID extraction rules, and error conditions (HTTP 400 on offset > 10000). It falls short of 5 because no example tool-call payloads or end-to-end worked examples are shown, leaving minor gaps in executability.

4 / 5

Workflow Clarity

Each workflow has a clearly numbered tool sequence with prerequisite markers and setup includes connection verification, but destructive operations (BOX_DELETE_FOLDER, BOX_PERMANENTLY_REMOVE_FOLDER) lack explicit validation checkpoints (e.g., list contents and confirm before deleting, verify outcome after), which caps workflow clarity at 3 per the rubric's destructive/batch-operation guideline.

3 / 5

Progressive Disclosure

The skill is a single ~230-line file with no reference bundle; section headers and a quick-reference table give it real structure, but the per-workflow API detail (parameters, pitfalls) is exactly the content that belongs in one-level-deep reference files, matching the anchor for inline content that should be separate.

3 / 5

Total

13

/

20

Passed

Description

71%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A specific, well-scoped description that clearly enumerates capabilities and names its niche, but it omits any explicit "when to use this" trigger guidance, which both caps completeness and slightly weakens its retrieval value. Adding a Use-when clause with natural trigger phrases would lift it into the top tier.

Suggestions

Add an explicit trigger clause, e.g., "Use when the user mentions Box, wants to upload/download/share files in Box, or manage Box folders or sign requests."

Include a few natural synonyms users would say (e.g., "Box account", "move files to Box", "Box sign") to broaden trigger-term coverage.

Move the operational note "Always search tools first for current schemas" into the body (Setup/Prerequisites) since it is guidance, not a description of capability.

DimensionReasoningScore

Specificity

The description lists six concrete action areas ("file upload/download, search, folder management, sharing, collaborations, and metadata queries"), giving comprehensive coverage of the skill's capabilities with no notable gaps.

5 / 5

Completeness

It clearly answers "what" with concrete capabilities, but contains no "Use when..." clause or equivalent trigger guidance; "Always search tools first for current schemas" is an instruction, not a usage trigger, so completeness is capped at 3 per the rubric guidelines.

3 / 5

Trigger Term Quality

Good natural keyword coverage ("upload/download", "search", "sharing", "Box"), but the description uses only one phrasing per capability and offers no synonyms or variations a user might naturally say (e.g., "move files to Box", "Box account").

4 / 5

Distinctiveness Conflict Risk

"Box cloud storage" plus "via Rube MCP (Composio)" carves out a clear niche that is unlikely to trigger for the wrong skill, but the generic "cloud storage operations" phrasing leaves minor overlap risk with other storage-toolkit skills (Dropbox, Google Drive, etc.).

4 / 5

Total

16

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

15

/

16

Passed

Repository
davepoon/buildwithclaude
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.