CtrlK
BlogDocsLog inGet started
Tessl Logo

env-setup

Create or update Novu environment variables in the user's project safely (never expose the secret key to the client). Complements the official Novu skills by covering project-level env configuration.

62

Quality

73%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

Fix and improve this skill with Tessl

tessl review fix ./packages/novu/src/commands/wizard/skills/content/env-setup/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

86%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The body is a model of lean, actionable instruction: exact env var names, a precise secret-leakage rule, concrete file targets, and an explicit verification checklist. The only gaps are minor — no pointer to where key values come from and no example .env placeholder format — and the lack of a strictly sequenced workflow with an error-recovery loop.

DimensionReasoningScore

Conciseness

The 29-line body is lean and assumes Claude's competence: exact variable names in a table, four terse rules, and a four-item checklist with zero padding or explanation of concepts Claude already knows — every token earns its place.

5 / 5

Actionability

Guidance is highly concrete — exact variable names, exact forbidden prefixes (NEXT_PUBLIC_*, VITE_*, REACT_APP_*), exact target files (.env.local, .env.example, vercel.json, netlify.toml, fly.toml) — but it never shows where key values are obtained (e.g. the Novu dashboard) or an example placeholder format for .env.example, leaving minor gaps.

4 / 5

Workflow Clarity

The opening line sequences the skill ("exactly once per project, before installing client snippets") and the Verification checklist supplies explicit checkpoints, but the Rules are not a strictly ordered flow and there is no fix-and-retry feedback loop, keeping it below the anchor-5 bar.

4 / 5

Progressive Disclosure

The skill is under 50 lines, needs no external references (none exist in references/, scripts/, or assets/), and is organized into clean, well-labeled sections — Required variables, Rules, Verification checklist — satisfying the simple-skill exception for a full score.

5 / 5

Total

18

/

20

Passed

Description

61%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description is concise, third-person, and states a clear "what" with a memorable safety constraint, and it explicitly positions itself against sibling Novu skills. Its main weaknesses are the complete absence of explicit "Use when..." trigger guidance and the thin coverage of concrete actions, which leave it distinguishable but under-specified for triggering.

Suggestions

Add an explicit trigger clause, e.g. "Use when the user asks to configure Novu keys, set up Novu environment variables, or add NOVU_SECRET_KEY to .env files" — the missing 'when' currently caps completeness at 3.

Fold the natural trigger phrases from the frontmatter triggers list ("add novu keys to .env", "configure novu env vars") into the description text so keyword matching works from the description alone.

Enumerate the concrete actions the skill performs — writing keys to .env.local/.env.example, updating .gitignore, registering keys in typed env loaders — to lift specificity from 1-2 actions to comprehensive coverage.

DimensionReasoningScore

Specificity

The description names the domain and 1-2 concrete actions — "Create or update Novu environment variables in the user's project safely (never expose the secret key to the client)" — but does not list the several specific actions the skill actually covers (writing env files, updating .gitignore, registering typed env schemas), so it is not comprehensive.

3 / 5

Completeness

The "what" is clear (create/update Novu env vars with a server-only secret key rule), but there is no "Use when..." clause or equivalent explicit trigger guidance in the description, which caps completeness at 3; the sequencing hint lives only in the body, not the description.

3 / 5

Trigger Term Quality

Terms like "Novu environment variables", "secret key", and "env configuration" give good natural keyword coverage, but common variations users would say — ".env", "API key", "application identifier" — are absent from the description text.

4 / 5

Distinctiveness Conflict Risk

"Complements the official Novu skills by covering project-level env configuration" explicitly carves out a distinct niche, but the official Novu skills it references are closely related, leaving minor overlap risk rather than the minimal risk of a fully isolated trigger space.

4 / 5

Total

14

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

15

/

16

Passed

Repository
novuhq/novu
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.