CtrlK
BlogDocsLog inGet started
Tessl Logo

desktop

Grida Desktop Electron shell and release-impact work: BrowserWindow, preload, `window.grida`, menus, protocol/deep links, file associations, Forge, path-scoped bridge security, Electron-only UI bugs, and CDP / Playwright verification. Use for `desktop/`, `editor/app/desktop/**`, `editor/scaffolds/desktop/**`, `editor/lib/desktop/**`, `/desktop/*` CSP, GRIDA-SEC-004, and deciding whether linked-package or hosted-renderer changes require a native Desktop version bump or coordinated release. For implementing daemon/agent-tenant core behavior, use `agent-system` as well.

73

Quality

91%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

SKILL.md
Quality
Evals
Security

Quality

Content

88%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A high-quality operational skill body: commands and code are copy-paste executable, workflows carry explicit validation and recovery loops, and it consistently assumes competence rather than teaching basics. The two residual gaps are mild wordiness in the release-impact prose and no use of reference files to split the long body, which keep conciseness and progressive disclosure at 4.

Suggestions

Move the release-impact decision rules and the #955 deep-link registration context into a one-level-deep reference file (e.g. references/release-impact.md), keeping SKILL.md to the audit command and the outcome line format.

Tighten the release-impact bullets and the deep-link Pointer entry into terse imperative statements to trim redundant clauses like 'Publishing or auto-update notification alone does not update installed clients'.

Consolidate the overlap between 'When to use this skill' and the frontmatter description into a single trigger list to cut duplicated tokens.

DimensionReasoningScore

Conciseness

The body assumes Claude's competence throughout — it never explains what Electron, CSP, or contextBridge are — and every section is operational ("Keep `contextIsolation: true`, `nodeIntegration: false`, and `sandbox: true`", "Do not put OPFS or IndexedDB desktop storage in `editor/app/desktop/**`"). Minor trimming opportunities remain: the release-impact bullets are wordy ("Publishing or auto-update notification alone does not update installed clients") and the deep-link Pointer entry is a long run-on, so it is efficient-with-minor-slack (4) rather than every-token-earns-its-place (5).

4 / 5

Actionability

Guidance is copy-paste ready and covers the common cases: exact commands (`pnpm --dir desktop dev -- --remote-debugging-port=9222`, `lsof -iTCP:9222 -sTCP:LISTEN`, `pkill -f "grida/desktop/node_modules/electron"`, `curl -s http://127.0.0.1:9222/json/version`), a complete executable Playwright probe, concrete hard-gate/soft-branch tsx patterns, a bundled audit script (`scripts/audit-release-impact.sh`, verified present), and named owner checks (`pnpm --dir desktop typecheck`). This matches the fully-executable anchor.

5 / 5

Workflow Clarity

Multi-step processes are clearly sequenced with validation checkpoints and recovery loops: two-terminal local setup, CDP launch with probe targets, a numbered Verification checklist ending in owner typecheck/test commands and a cold-reload step, and the release-impact audit run "At the start and before handoff" with explicit decision rules for each outcome. Recovery loops are present (forge returning the prompt while Electron stays alive → lsof confirm → pkill; playwright-core resolution fallbacks), matching the score-5 anchor with feedback loops and checklists.

5 / 5

Progressive Disclosure

The body is well-sectioned and navigable, cross-references sibling skills and repo docs one level deep with clear signaling ([`agent-system`](../agent-system/SKILL.md), [`security`](../security/SKILL.md), SECURITY.md, CONTRIBUTING.md), and the one bundle reference (scripts/audit-release-impact.sh) is real and clearly invoked. However, it is a ~315-line monolith with no references/ split — content like the release-impact decision rules and the #955 deep-link registration context would sit better in one-level-deep reference files — so it fits the good-structure-with-minor-gaps anchor (4) rather than the clear-overview-with-split-references anchor (5).

4 / 5

Total

18

/

20

Passed

Description

95%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong description: it answers both what and when with concrete repo-specific triggers, is written in third person, and explicitly disambiguates against the adjacent agent-system skill. The only weakness is that the capability list is topic-heavy rather than action-verb-driven, which keeps specificity at 4 rather than 5.

DimensionReasoningScore

Specificity

Quotes: "Grida Desktop Electron shell and release-impact work: BrowserWindow, preload, `window.grida`, menus, protocol/deep links, file associations, Forge, path-scoped bridge security, Electron-only UI bugs, and CDP / Playwright verification" plus "deciding whether linked-package or hosted-renderer changes require a native Desktop version bump or coordinated release". Coverage is comprehensive and concrete, but the list leans toward naming components/topics (BrowserWindow, Forge, CSP) rather than the concrete actions of the score-5 anchor, so it sits at 4.

4 / 5

Completeness

What is explicit ("Grida Desktop Electron shell and release-impact work: BrowserWindow, preload, ... CDP / Playwright verification") and when is explicit with concrete trigger phrases ("Use for `desktop/`, `editor/app/desktop/**`, `editor/scaffolds/desktop/**`, `editor/lib/desktop/**`, `/desktop/*` CSP, GRIDA-SEC-004, and deciding whether linked-package or hosted-renderer changes require a native Desktop version bump or coordinated release"). Both halves are clearly present, matching the score-5 anchor rather than the 4 anchor's "when could be more explicit".

5 / 5

Trigger Term Quality

Natural terms a user would say are comprehensively covered: "desktop", "Electron", "preload", "menus", "deep links", "file associations", "window.grida", "CSP", "Playwright", plus concrete path triggers (`desktop/`, `editor/app/desktop/**`, `/desktop/*`) that play the role of file extensions, and "GRIDA-SEC-004" / "native Desktop version bump" as repo-specific triggers. This matches the comprehensive-coverage anchor including synonyms better than the score-4 anchor, which expects missing terms.

5 / 5

Distinctiveness Conflict Risk

A clear niche (the Grida Desktop Electron shell, its path-scoped bridge, and release-impact decisions) with distinct triggers, and it actively reduces conflict by redirecting: "For implementing daemon/agent-tenant core behavior, use `agent-system` as well." Minimal overlap risk with sibling skills since it names the exact directories and route scope it owns.

5 / 5

Total

19

/

20

Passed

Validation

87%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 14 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

relative_links

Relative link issues: 4 suspicious

Warning

referenced_paths_exist

Referenced path issues: 1 missing

Warning

Total

14

/

16

Passed

Repository
gridaco/grida
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.