CtrlK
BlogDocsLog inGet started
Tessl Logo

goth-fundamentals

This skill should be used when the user asks to "set up goth", "install goth", "oauth in go", "authentication in golang", "goth package", "goth basics", or mentions "github.com/markbates/goth". Provides foundational guidance for the Goth multi-provider authentication library.

58

Quality

73%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Passed

No findings from the security scan

Fix and improve this skill with Tessl

tessl review fix ./plugins/goth-oauth/skills/goth-fundamentals/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

71%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A highly actionable, well-sectioned reference with complete executable Go examples covering setup, routing, session management, error handling, and token refresh. Its weaknesses are verbosity from verbatim API-struct dumps and a complete absence of progressive disclosure — everything is inline with no reference files to split the bulk.

Suggestions

Move the Provider/Session interface listings and the User struct fields into a references/api.md file, keeping only the few methods actually used (UseProviders, BeginAuthHandler, CompleteUserAuth) inline.

Extract the supported-providers table and per-provider configuration detail into references/providers.md and link to it from a short inline summary.

Reorder the flow so session-store configuration precedes the auth routes that depend on it, and add an explicit verification step (e.g. run the server and complete a test login) at the end of the authentication flow.

DimensionReasoningScore

Conciseness

The body verbatim-dumps the Provider interface, Session interface, and the 17-field User struct — content Claude can read from pkg.go.dev — plus filler like 'Sessions manage OAuth state throughout the authentication flow'. It is mostly efficient but has several unnecessary sections that could be trimmed, fitting the 'mostly efficient but includes some unnecessary explanation' anchor rather than the 'minor instances' one.

3 / 5

Actionability

Every section is fully executable, copy-paste-ready Go: go get and import statements, provider registration with env-var credentials, complete HTTP handlers for auth/callback/logout, cookie-store configuration, error-handling switch, and a working token-refresh function covering the common cases.

5 / 5

Workflow Clarity

The authentication flow is clearly sequenced as Steps 1-3 (register providers, create auth routes, configure session store) and the callback handler checks err before proceeding — a checkpoint. Minor gaps remain: no explicit verify-the-flow step, and the session-store config the handlers depend on appears last.

4 / 5

Progressive Disclosure

Section headers are clear, but the ~315-line SKILL.md is a monolith with no bundle files at all — the 70+ provider table, the struct/interface definitions, and provider-specific detail would fit naturally in references/ files. This matches 'some structure; content that should be separate is inline' rather than the good-structure anchor, since no one-level-deep references exist to be clearly signaled.

3 / 5

Total

15

/

20

Passed

Description

65%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong trigger-focused description with explicit 'use when' guidance and highly specific goth-related keywords. Its main weakness is a vague capability statement — 'foundational guidance' names the domain without any concrete actions — and generic OAuth-in-Go triggers that slightly raise conflict risk with non-Goth Go auth skills.

Suggestions

Replace 'Provides foundational guidance' with 2-3 concrete capabilities, e.g. 'Register OAuth providers, wire login/callback routes with the gothic helper, and configure session stores using github.com/markbates/goth'.

Tighten the broad triggers 'oauth in go' and 'authentication in golang' toward goth-specific intent (e.g. 'go oauth library', 'multi-provider login in go') to reduce overlap with non-Goth Go authentication skills.

Add one or two natural user phrasings that are currently missing, such as 'login with Google in Go' or 'social login golang'.

DimensionReasoningScore

Specificity

The only capability statement is 'Provides foundational guidance for the Goth multi-provider authentication library' — the domain is named but the action described is generic, with no concrete actions like registering providers, wiring callbacks, or configuring session stores listed.

2 / 5

Completeness

Both 'what' and 'when' are present: the 'when' is explicit with quoted trigger phrases, but the 'what' ('Provides foundational guidance') is vague rather than concretely stating what the skill does, so it does not clearly answer both at anchor-5 strength.

4 / 5

Trigger Term Quality

Good natural trigger coverage including 'set up goth', 'install goth', 'oauth in go', 'authentication in golang', 'goth package', 'goth basics', and the import path 'github.com/markbates/goth'. A few natural variants like 'social login', 'sign in with Google', or 'go login flow' are missing, so it falls short of comprehensive.

4 / 5

Distinctiveness Conflict Risk

The goth import path and 'goth' phrasing make this mostly distinct, but the generic triggers 'oauth in go' and 'authentication in golang' would also fire for non-Goth Go OAuth questions, creating minor overlap with any other Go-authentication skill.

4 / 5

Total

14

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

15

/

16

Passed

Repository
freightCognition/linehaulai-claude-marketplace
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.