CtrlK
BlogDocsLog inGet started
Tessl Logo

google-workspace

Access Google Workspace APIs (Drive, Docs, Calendar, Gmail, Sheets, Slides, Chat, People) via local helper scripts without MCP. Handles OAuth login and direct API calls.

64

Quality

81%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Critical

Do not install without reviewing

SKILL.md
Quality
Evals
Security

Quality

Content

82%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A well-executed operational skill: fully executable, verified commands with a clear multi-account model, an explicit auth-failure playbook with feedback loops, and honest documentation that matches the actual bundle scripts. Remaining polish is structural — consolidate the repeated 'auth.js accounts' guidance and overlapping agent rules, and consider moving the Gmail pagination example to a reference file.

DimensionReasoningScore

Conciseness

The body is efficient: no explanation of what Google Workspace or OAuth is, and every section is commands or terse rules. Not score 5 because of structural redundancy — 'node scripts/auth.js accounts' appears four times (lines 26, 77, 134, plus Agent guidance) and Agent guidance items 5-7 substantially repeat the 'Unauthorized/account-switch playbook' that follows; not score 3 because there is no padded or over-explained content, only minor trimming opportunities.

4 / 5

Actionability

Everything is copy-paste executable: exact CLI invocations with heredocs ('node scripts/workspace.js exec --email user@example.com <<JS'), flags with defaults ('--timeout <ms>' default 30000, max 300000), the exec sandbox's exposed API surface, and a complete pagination example. Verified against the bundle: scripts/auth.js implements login/status/clear/accounts and scripts/workspace.js implements exec with --script/--timeout/--scopes and whoAmI, exactly as documented; the examples cover the common cases.

5 / 5

Workflow Clarity

The unauthorized playbook is a numbered sequence with a feedback loop (enumerate profiles → retry with intended account → re-login if stale → retry original), and whoAmI serves as an explicit account-verification checkpoint. Not score 5 because the main flow is scattered across sections — Setup + auth appears last, after Usage, so the login-first dependency is implicit rather than a single ordered sequence; not score 3 because error-recovery checkpoints are explicitly present.

4 / 5

Progressive Disclosure

A 'Files' section lists the two bundle scripts with one-line descriptions and every path referenced in the body (scripts/auth.js, scripts/workspace.js) is a real file — implementation detail lives in the scripts, one level deep. Not score 5 because at ~135 lines some content could move out of SKILL.md (the ~20-line Gmail trash-counting example would fit an examples reference, and common.js exists in the bundle but is undocumented); not score 3 because the structure is clean, sectioned, and nothing that clearly belongs in a separate file is inlined.

4 / 5

Total

17

/

20

Passed

Description

70%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong, third-person description with excellent natural trigger terms (the eight product names) and a distinctive niche explicitly set apart from MCP-based alternatives. Its one real weakness is the total absence of a 'Use when...' trigger clause, which caps completeness and leaves invocation guidance implicit. Actions are named but stay at the 'access/handles' level rather than concrete operations.

Suggestions

Add an explicit trigger clause, e.g. 'Use when the user asks about Gmail messages, Drive files, Calendar events, Docs/Sheets/Slides content, or any Google Workspace task' — its absence currently caps completeness at 3.

Name one or two concrete operations per capability (e.g. 'send Gmail, search messages, list/share Drive files, create Calendar events') to lift specificity from generic 'access/handles' verbs.

Include common synonyms such as 'G Suite' or 'Google account' to broaden trigger-term coverage.

DimensionReasoningScore

Specificity

The description lists several specific capabilities — 'Access Google Workspace APIs (Drive, Docs, Calendar, Gmail, Sheets, Slides, Chat, People)', 'Handles OAuth login and direct API calls' — with only minor gaps (it never says what kinds of operations: read, send, create, share). Not score 5 because the actions themselves ('Access', 'Handles') stay generic rather than enumerating concrete operations; not score 3 because the service enumeration plus OAuth/token handling goes beyond 1-2 actions.

4 / 5

Completeness

The 'what' is clear — access Google Workspace APIs via local helper scripts without MCP, with OAuth handling — but there is no 'Use when...' clause or equivalent explicit trigger guidance anywhere in the description, which caps completeness at 3 per the judging guidelines. It sits at anchor 3 (clear what, when missing) rather than 4 because the 'when' is entirely absent, not merely imprecise.

3 / 5

Trigger Term Quality

'Drive, Docs, Calendar, Gmail, Sheets, Slides, Chat, People' are exactly the natural product names users say when they need this skill, giving good keyword coverage. Not score 5 because common synonyms and variations are missing ('G Suite', 'Google account', file extensions like .gsheet) and the trigger phrasing is product nouns only; not score 3 because eight distinct, high-frequency natural terms far exceed 'some relevant keywords'.

4 / 5

Distinctiveness Conflict Risk

'Google Workspace APIs (Drive, Docs, Calendar, Gmail, Sheets, Slides, Chat, People) ... without MCP' carves out a clear niche with distinct product-name triggers and explicitly disambiguates from MCP-based equivalents. Minimal conflict risk with generic document or email skills, matching the anchor-5 example's structure of distinct triggers tied to named file/service terms.

5 / 5

Total

16

/

20

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
mitsuhiko/agent-stuff
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.