CtrlK
BlogDocsLog inGet started
Tessl Logo

browser-auth

Documents how to use Chrome DevTools MCP to navigate authenticated web pages, extract data (tokens, configuration values), take screenshots, and handle login flows. Use when you need to interact with Buildkite, AWS Console, or other authenticated web UIs via the Chrome browser. Triggers when users ask about "browser auth", "extract token from browser", "navigate to buildkite", "chrome mcp", or need to scrape data from authenticated pages.

67

Quality

80%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Critical

Do not install without reviewing

SKILL.md
Quality
Evals
Security

Quality

Content

73%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A well-structured, highly actionable skill body with a clear validated workflow and useful error-recovery guidance. The main weakness is redundancy — login-page detection and login-flow handling are repeated across three sections — which costs token efficiency, and at its length some content could live in reference files.

Suggestions

Consolidate the three overlapping sections on login handling (Step 1, 'Login Flow Handling', 'Detecting Login Pages') into one place — the login-page indicator list is duplicated almost verbatim at lines 84 and 193-197.

Move the site-specific patterns (Buildkite token extraction, AWS Console navigation) and the troubleshooting table into a reference file (e.g., references/patterns.md) so SKILL.md stays a lean overview.

Make the placeholder steps more executable by showing how to locate a uid from the snapshot output before the click(uid=...) call in the click-to-copy pattern.

DimensionReasoningScore

Conciseness

The body is mostly efficient operational guidance, but login-page handling is described three times — Step 1 ("Look for: 'Login', 'Sign in', 'Welcome back', password fields, SSO buttons"), the Login Flow Handling section, and Detecting Login Pages (which repeats nearly the same indicator list) — so it could be meaningfully tightened. It is above a 2 because there is no padding or explanation of concepts Claude already knows.

3 / 5

Actionability

Mostly executable guidance: concrete tool calls like `navigate_page(type="url", url="https://example.com/settings")`, copy-paste-ready `evaluate_script(function="() => document.querySelector('[data-token]').textContent")`, real config JSON, and a bash relaunch command. It falls short of 5 because some entries are placeholders (e.g., `click(uid="<copy-button-uid>")`, `navigate_page → take_snapshot → check for login page indicators`) that leave minor gaps for the reader to fill in.

4 / 5

Workflow Clarity

The navigate-and-extract workflow is clearly sequenced (check login → navigate → snapshot → extract → verify) with explicit validation checkpoints (login-page indicators, redirect loop-back to Step 1, optional screenshot verification) and feedback loops for error recovery (the troubleshooting table, wait-for-render handling, and the ask-user-then-re-navigate login loop). No destructive or batch operations exist, so no cap applies.

5 / 5

Progressive Disclosure

The single SKILL.md is well-organized with clear sections (Prerequisites, Configuration, Workflow, Common Patterns, Troubleshooting, Security Notes) and no broken or nested references. It scores 4 rather than 5 because at ~200 lines the under-50-line exception does not apply and content such as the troubleshooting table or site-specific patterns could be split into reference files for a leaner overview.

4 / 5

Total

16

/

20

Passed

Description

87%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong description with comprehensive concrete actions, an explicit use-when clause with natural trigger phrases, and a well-defined niche. The only deductions are second-person voice in the when-clause and a few missing trigger synonyms.

DimensionReasoningScore

Specificity

The description lists four concrete actions ("navigate authenticated web pages, extract data (tokens, configuration values), take screenshots, and handle login flows") which comprehensively covers the skill's capabilities and matches the 5 anchor — but the second-person phrasing "Use when you need to interact with..." incurs the rubric's -1 voice penalty, dropping it to 4. It is not a 3 because the action list is far more complete than 1-2 concrete actions.

4 / 5

Completeness

It explicitly answers both what ("Documents how to use Chrome DevTools MCP to navigate... extract data... take screenshots, and handle login flows") and when ("Use when you need to interact with Buildkite, AWS Console, or other authenticated web UIs... Triggers when users ask about...") with concrete trigger phrases, matching the 5 anchor exactly.

5 / 5

Trigger Term Quality

Triggers include natural phrases users would say ("browser auth", "extract token from browser", "navigate to buildkite", "chrome mcp", "scrape data from authenticated pages") plus named sites (Buildkite, AWS Console) — good keyword coverage. It falls short of the 5 anchor because common variations like "screenshot", "log into", "SSO", or "devtools" are absent.

4 / 5

Distinctiveness Conflict Risk

The niche is clear (browser automation of authenticated web UIs via Chrome DevTools MCP) with distinct triggers like "chrome mcp" and "browser auth", giving minimal conflict risk with other skills. It clearly fits the 5 anchor's 'clear niche with distinct triggers'.

5 / 5

Total

18

/

20

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
mock-server/mockserver-monorepo
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.