CtrlK
BlogDocsLog inGet started
Tessl Logo

terra-webhooks

Terra API webhook handling for real-time health data. Use when setting up webhook endpoints, verifying signatures, handling events, or debugging webhook issues.

63

Quality

79%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Passed

No findings from the security scan

Fix and improve this skill with Tessl

tessl review fix ./.claude/skills/terra-webhooks/SKILL.md

The canonical home for this skill is terra-webhooks in fernandezbaptiste/Skrillz

SKILL.md
Quality
Evals
Security

Quality

Content

63%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A strong, information-dense reference with executable code, useful operational details (retries, idempotency, IP whitelisting), and explicit signature-verification checkpoints. Its main weaknesses are duplication (verify_signature x3, IP list x2) and a monolithic structure that inlines payload schemas and operation code that belong in reference files.

Suggestions

Extract the repeated signature-verification code into a single canonical implementation and remove the duplicate IP list, keeping one reference to it (improves conciseness).

Move per-event payload schema examples (auth, activity, sleep, daily, deauth) into a references/payloads.md and the operation implementations into references/operations.md, keeping SKILL.md as a concise overview with well-signaled one-level-deep links (improves progressive_disclosure).

Define or stub the undefined dependencies used in handler examples (db, logger, trigger_backfill, process_event) and fix the curl test example to include a valid signature or note that signature verification must be bypassed for local testing (improves actionability).

DimensionReasoningScore

Conciseness

The body is mostly dense Terra-specific reference material (event tables, payload examples, retry schedule), but includes notable duplication: the verify_signature code appears nearly verbatim three times (Quick Start, setup-webhook-endpoint, verify-signature operation) and the Terra IP list appears twice. Fits anchor 3 (mostly efficient but could be tightened) rather than anchor 4, where duplication would be only minor.

3 / 5

Actionability

Concrete, mostly executable Flask/Celery/Mongo code with copy-paste-ready signature verification and handler dispatch. Minor gaps keep it below anchor 5: handlers reference undefined dependencies (db, logger, trigger_backfill, process_event), and the curl test example sends an unsigned payload its own code would reject with 401.

4 / 5

Workflow Clarity

The Quick Start numbers its steps (verify signature → parse → handle → respond immediately) and includes an explicit validation checkpoint (401 on invalid signature) plus idempotency and retry handling for failure recovery. Below anchor 5 because there is no error-recovery loop for processing failures (e.g., what to do when a handler throws) and the setup-to-test sequence is implicit rather than laid out.

4 / 5

Progressive Disclosure

Section headers are clear, but the ~560-line SKILL.md is monolithic with no references/ files: full payload schema examples and complete operation implementations that clearly belong in separate reference files are inlined. Matches anchor 3 (good structure, but content that should be separate is inline); anchor 4 would require most bulk content to live in external files.

3 / 5

Total

14

/

20

Passed

Description

87%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A well-crafted description: concrete actions, an explicit "Use when" clause with natural trigger phrases, and a clearly delimited Terra API niche. Minor room for improvement in adding data-type keywords (activity, sleep) and synonyms, but no fluff or over-claims.

DimensionReasoningScore

Specificity

Lists several concrete actions ("setting up webhook endpoints", "verifying signatures", "handling events", "debugging webhook issues") in the Terra domain. Falls short of anchor 5 because "handling events" is generic and coverage has gaps (no mention of specific event/data types like activity or sleep).

4 / 5

Completeness

Clearly answers both what ("Terra API webhook handling for real-time health data") and when ("Use when setting up webhook endpoints, verifying signatures, handling events, or debugging webhook issues") with four concrete trigger phrases. Matches the anchor 5 pattern; anchor 4 would require the when-clause to be less explicit.

5 / 5

Trigger Term Quality

Good keyword coverage with natural phrases users would say ("webhook endpoints", "verifying signatures", "debugging webhook issues", "real-time health data"). Not anchor 5 because a few natural synonyms/variations (e.g., provider names, "Terra webhooks", event-type terms) are missing.

4 / 5

Distinctiveness Conflict Risk

"Terra API" names a specific niche with distinct triggers (signature verification, Terra webhook endpoints), giving minimal conflict risk with other skills. Clearly above anchor 4, which implies overlap with closely related skills.

5 / 5

Total

18

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

skill_md_line_count

SKILL.md is long (559 lines); consider splitting into references/ and linking

Warning

Total

15

/

16

Passed

Repository
fernandezbaptiste/Skrillz
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.