CtrlK
BlogDocsLog inGet started
Tessl Logo

terra-auth

Terra API authentication, credentials management, and environment configuration. Use when setting up Terra integration, managing API keys, generating widget sessions, or configuring testing/staging/production environments.

58

Quality

73%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Passed

No findings from the security scan

Fix and improve this skill with Tessl

tessl review fix ./.claude/skills/terra-auth/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

50%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The body is practical and rich with executable examples, but suffers from inconsistent credential schemes (env var names and .env filenames differ between sections), a reference to a nonexistent helper script, and no validation around the destructive deauthenticate operation. Fixing the internal contradictions would materially improve actionability.

Suggestions

Consolidate the three conflicting client-construction approaches into one canonical method, resolving the TERRA_DEV_ID vs TERRA_DEV_ID_TESTING env var naming and the .env.terra.testing vs .env.testing filename discrepancy.

Add a validation/confirmation checkpoint before deauthenticate-user (e.g., verify the user_id against active connections and confirm intent), since it destructively removes the user and revokes data access.

Either ship scripts/terra_client.py in the bundle or remove the 'from scripts.terra_client import get_terra_client' import; consider moving the REST API headers, session lifecycle, and base URL reference tables into a reference file to slim SKILL.md.

DimensionReasoningScore

Conciseness

The body is code-dense with no conceptual padding, but client construction is presented three times with conflicting schemes: dotenv loading in 'Credential Files', the 'scripts.terra_client' helper, and a full inline get_terra_client under 'setup-environment'. Consolidating these would tighten the document; anchor 4 would require only minor trimming rather than removing duplicated sections.

3 / 5

Actionability

Code examples are concrete and mostly executable, but contain internal contradictions that would break execution: TERRA_DEV_ID vs TERRA_DEV_ID_TESTING naming across sections, '.env.terra.testing' in the table vs '.env.testing' in comments, and an import 'from scripts.terra_client import get_terra_client' pointing to a module that does not exist in the bundle. These are missing key details rather than merely minor gaps, so it sits below anchor 4 but well above the high-level-hints level of anchor 2.

3 / 5

Workflow Clarity

Each operation is individually well-sequenced with usage examples, and one verification step exists ('Verify connection'), but the destructive 'deauthenticate-user' operation ('Remove user and revoke data access') has no validation or confirmation checkpoint. Per the rubric, a destructive operation without validation caps workflow clarity at 3.

3 / 5

Progressive Disclosure

Sections and tables are clearly organized, but the body's one bundle-file reference (scripts/terra_client) does not exist in the bundle, and ~270 lines of reference material (REST headers, session lifecycle, base URLs, per-operation code) are all inlined with no split into reference files. Anchor 4 requires references to be mostly clear and content appropriately placed; the broken reference and fully inlined bulk keep it at anchor 3.

3 / 5

Total

12

/

20

Passed

Description

83%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong description: third-person, concise, with an explicit 'Use when...' clause carrying multiple concrete, natural triggers anchored to a specific product. The main improvement opportunity is enumerating a fuller set of concrete capabilities in the what-statement and adding a few more trigger synonyms.

DimensionReasoningScore

Specificity

The what-statement lists three capability areas ('Terra API authentication, credentials management, and environment configuration') and the when-clause adds concrete actions like 'generating widget sessions' and 'managing API keys'. It falls short of anchor 5 because the what-statement stays at broad capability areas rather than enumerating multiple concrete actions (mobile token generation, deauthentication are absent), but exceeds anchor 3 by naming the domain plus several specific actions.

4 / 5

Completeness

Clearly answers what ('Terra API authentication, credentials management, and environment configuration') and explicitly when via a 'Use when...' clause with four concrete trigger phrases, matching the anchor-5 example pattern. Anchor 4 would apply only if the when-clause were generic or less explicitly signaled, which it is not.

5 / 5

Trigger Term Quality

Phrases like 'setting up Terra integration', 'managing API keys', 'generating widget sessions', and 'configuring testing/staging/production environments' are natural things a user working with Terra would say. Not anchor 5 because common variations such as 'auth tokens', 'credentials', or 'mobile SDK' are missing; not anchor 3 because keyword coverage is good rather than merely partial.

4 / 5

Distinctiveness Conflict Risk

Triggers are anchored to the specific Terra product and scoped to authentication ('API keys', 'widget sessions'), giving a clear niche. Minor overlap risk remains with closely related sibling skills (terra-connections, terra-sdk) since 'setting up Terra integration' could plausibly route to a setup/connections skill, placing it just below anchor 5 and above anchor 3.

4 / 5

Total

17

/

20

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
fernandezbaptiste/Skrillz
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.