CtrlK
BlogDocsLog inGet started
Tessl Logo

resend-webhooks

Receive and verify Resend webhooks. Use when setting up Resend webhook handlers, debugging signature verification, handling email events like email.sent, email.delivered, email.bounced, or processing inbound emails.

69

Quality

87%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Low

Low-risk findings worth noting

SKILL.md
Quality
Evals
Security

Quality

Content

75%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The body delivers excellent actionability through three complete webhook handlers and precise configuration details. Its weaknesses are token efficiency (duplicated verification code and promotional sections) and small navigation gaps from dangling examples/ paths not present in the bundle.

Suggestions

Keep one canonical verification implementation inline (the SDK handler) and move the manual-Svix and FastAPI variants into the existing examples or references files, replacing the duplicated HMAC logic with a pointer.

Remove or condense the 'Recommended: webhook-handler-patterns' and 'Related Skills' sections — they cross-promote other skills without adding task-relevant guidance and consume context tokens.

Fix the dangling 'examples/express/', 'examples/nextjs/', and 'examples/fastapi/' links: either ship those directories in the bundle or relabel them as external GitHub URLs so navigation never dead-ends.

DimensionReasoningScore

Conciseness

The body is mostly efficient (code-forward, useful event table, terse env-var section), but it inlines three near-duplicate verification implementations (Express SDK, manual Svix HMAC, FastAPI) and spends two sections on cross-promotion ('Recommended: webhook-handler-patterns' and a 10-link 'Related Skills' list) that earn no tokens for the task.

3 / 5

Actionability

All three handlers are complete, executable, copy-paste-ready implementations with the raw-body caveat, header names, secret handling, timestamp tolerance, and error responses spelled out, plus exact env-var and tunnel commands.

5 / 5

Workflow Clarity

Each example embeds a clear verify-then-handle sequence with validation checkpoints (signature check, 5-minute timestamp tolerance, try/catch with 400 responses), but there is no explicit guidance on choosing between the SDK, manual, and FastAPI implementations, so minor gaps remain.

4 / 5

Progressive Disclosure

The three real bundle files (references/overview.md, setup.md, verification.md) are clearly labeled and one level deep, but the 'examples/express/', 'examples/nextjs/', and 'examples/fastapi/' links point to directories that do not exist in the bundle, and the other-skill reference links live outside it — minor organization gaps.

4 / 5

Total

16

/

20

Passed

Description

95%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong description: it states what the skill does and gives an explicit, trigger-rich 'Use when' clause covering setup, verification debugging, event handling, and inbound email. Third-person, concise, and highly distinct from sibling webhook skills.

DimensionReasoningScore

Specificity

The description names the domain and several concrete actions ('setting up Resend webhook handlers', 'debugging signature verification', 'processing inbound emails'), but the core 'what' statement ('Receive and verify Resend webhooks') is a single general action, leaving minor gaps in coverage versus the comprehensive anchor.

4 / 5

Completeness

It explicitly answers 'what' ('Receive and verify Resend webhooks') and 'when' ('Use when setting up Resend webhook handlers, debugging signature verification, handling email events like email.sent...') with concrete trigger phrases.

5 / 5

Trigger Term Quality

Natural trigger phrases ('webhook handlers', 'signature verification', 'inbound emails') are combined with enumerated event names (email.sent, email.delivered, email.bounced), giving comprehensive coverage of the terms a user would naturally say when needing this skill.

5 / 5

Distinctiveness Conflict Risk

'Resend webhooks' is a clear niche with provider-specific triggers (Resend, svix-style signature verification, email.sent events), making it clearly distinguishable from generic webhook or other provider-specific skills.

5 / 5

Total

19

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

relative_links

Relative link issues: 3 missing

Warning

Total

15

/

16

Passed

Repository
hookdeck/webhook-skills
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.