CtrlK
BlogDocsLog inGet started
Tessl Logo

credential-setup-with-computer-use

Guides n8n credential setup through Computer Use browser tools. Use when a user needs OAuth apps, API keys, client IDs, client secrets, or other credential values from an external service console.

72

Quality

90%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Low

Low-risk findings worth noting

SKILL.md
Quality
Evals
Security

Quality

Content

100%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The body is an exemplary instruction-only skill: lean, imperative, and concrete. It sequences the workflow with explicit checkpoints (fresh snapshots, page-state inspection, termination criteria, closeout re-invocation), handles secrets safely by delegating to dedicated capture tools, and stays within token budget with zero filler. No structural weaknesses found.

DimensionReasoningScore

Conciseness

The body is entirely imperative directives with zero padding — it never explains what OAuth, n8n, or browser automation is, and lines like "Reading docs, reaching a dashboard, enabling an API, or seeing a settings page is not completion" earn their tokens by disambiguating termination. Matches anchor 5 ('lean and efficient; every token earns its place').

5 / 5

Actionability

For an instruction-only skill the guidance is fully actionable: exact tool names with parameters throughout (`research(action="fetch-url")`, `browser_capture_secret` with `ref`/`redactedKey`/`credentialsKey`, `browser_create_credential` with `data` vs `resolveData`, `interactive: false` for static text). Per the rubric's code-vs-instruction note, absence of code snippets is not penalized since the guidance names the exact calls, parameters, and conditions. Not 4 because there is no high-level hand-waving — each instruction specifies the tool and its arguments.

5 / 5

Workflow Clarity

The 5-step Default Procedure is clearly sequenced with explicit checkpoints: fresh `browser_snapshot` before any interaction (stale-ref guard), page-state inspection after navigation/clicks, explicit termination conditions ("Continue until the credential can be created... or a real blocker is reached"), and a closeout step re-invoking the setup tool after creation. Error handling is present ("If browser tools are unavailable, disconnected, or permanently denied, stop and explain"). Not 4 because checkpoints are explicit at every phase rather than mostly present.

5 / 5

Progressive Disclosure

This is a compact self-contained skill: no references/, scripts/, or assets/ directories exist, and the body (well under ~60 lines) needs none — everything is appropriately inlined under clear sections (Default Procedure, Secrets, Browser Discipline, Closeout). Fits the rubric's simple-skill exception: well-organized sections with no need for external references score 5.

5 / 5

Total

20

/

20

Passed

Description

78%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A well-formed description with an explicit what/when pair, correct third-person voice, and strong natural trigger terms. The main gap is that the 'what' compresses the skill's several concrete actions (research docs, navigate console, capture secrets, create credential) into one generic verb, and the trailing catch-all slightly broadens trigger scope.

Suggestions

Expand the 'what' clause with 1-2 more concrete actions, e.g., 'Locates credential values in external service consoles and captures them into n8n credentials via Computer Use browser tools', so it distinguishes the locate/capture/create steps.

Add natural synonyms to the trigger clause such as 'secrets' or 'API credentials' and consider naming example provider consoles users would mention.

Tighten the catch-all 'or other credential values' to scope the trigger to cases where the value must be retrieved from a provider console, reducing overlap with plain credential-entry requests.

DimensionReasoningScore

Specificity

"Guides n8n credential setup through Computer Use browser tools" names the domain and a single composite action, but does not break that into several distinct concrete capabilities (e.g., locating values in provider consoles, capturing secrets, creating the n8n credential). It sits at anchor 3 ('names domain and 1-2 concrete actions'); not 4 because the enumerated items ("OAuth apps, API keys, client IDs, client secrets") are trigger inputs rather than actions the skill performs, and not 2 because the domain and mechanism are concretely named.

3 / 5

Completeness

Both parts are explicit: the 'what' ("Guides n8n credential setup through Computer Use browser tools") and a concrete 'Use when...' trigger clause enumerating the exact situations ("Use when a user needs OAuth apps, API keys, client IDs, client secrets, or other credential values from an external service console"). Third person voice is used correctly. Clearly matches anchor 5.

5 / 5

Trigger Term Quality

Natural user phrasing is well covered: "OAuth apps", "API keys", "client IDs", "client secrets", "credential values", "external service console", "n8n credential". Not 5 because common variations like "secrets", "API credentials", "service provider" (vs "external service"), or specific provider names are missing.

4 / 5

Distinctiveness Conflict Risk

The niche is clear (n8n credentials via Computer Use browser tools) and mostly distinct, but the catch-all "or other credential values from an external service console" could over-trigger for cases where the user already holds the value and only needs it entered, or for non-browser credential entry. This is minor overlap risk with closely related skills — anchor 4 rather than 5.

4 / 5

Total

16

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

15

/

16

Passed

Repository
n8n-io/n8n
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.