CtrlK
BlogDocsLog inGet started
Tessl Logo

upgrade-stripe

Guide for upgrading Stripe API versions, webhook endpoints, server-side SDKs, Stripe.js, and mobile SDKs

64

1.05x
Quality

67%

Does it follow best practices?

Impact

100%

1.05x

Average score across 1 eval scenario

SecuritybySnyk

Low

Low-risk findings worth noting

Fix and improve this skill with Tessl

tessl review fix ./skills/upgrade-stripe/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

70%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The content is highly actionable with a well-sequenced, validation-rich upgrade checklist and copy-paste-ready examples across the common cases. Its weaknesses are moderate verbosity from redundant and textbook-style sections, and a monolithic single-file structure with no progressive disclosure of detail into reference files.

Suggestions

Trim explanations Claude already knows (the generic semver MAJOR/MINOR/PATCH taxonomy for mobile SDKs) and remove the "Best Practice" good/avoid code block that duplicates the earlier client-init examples.

Split per-topic detail into reference files (e.g. references/server-sdks.md, references/stripejs.md, references/mobile-sdks.md) and keep SKILL.md as a concise overview with clearly signaled one-level-deep links.

Close the actionability gaps: add a PHP example for dynamically-typed SDKs and concrete commands for selecting Java/Go/.NET SDK releases that target a chosen API version.

DimensionReasoningScore

Conciseness

The body is mostly efficient with concrete code, but includes unnecessary padding: a generic MAJOR/MINOR/PATCH semver taxonomy Claude already knows, a "Best Practice" good/avoid block that duplicates the earlier client-init examples, and repeated changelog/upgrades links (appearing both inline and in the checklist). The dated fallback version is well-caveated with staleness guidance but is still time-sensitive content inline.

3 / 5

Actionability

Mostly executable guidance: copy-paste-ready Python/Ruby/Node client config, a per-request override, curl with the Stripe-Version header, npm install commands, and a highly concrete webhook-destination cutover procedure (inspect snapshot_api_version, dual signing secrets, disable old destination). Minor gaps keep it below fully-executable: PHP is listed under dynamically-typed languages with no example, and Java/Go/.NET SDK selection gives no concrete commands.

4 / 5

Workflow Clarity

The 9-step Upgrade Checklist is clearly sequenced with explicit validation checkpoints: test against the target with the Stripe-Version header, create and test a replacement destination before cutover, accept both signing secrets during testing, and disable the old destination after cutover. Failure handling ("If live verification fails or is unavailable, say that the latest version remains unverified") and the 72-hour rollback note round out error recovery.

5 / 5

Progressive Disclosure

The ~200-line body is reasonably sectioned, but multi-topic detail that would sit better in separate reference files — per-language server SDK examples, Stripe.js versioning, mobile SDK versioning — is all inlined in SKILL.md, and there are no bundle files at all. This matches the anchor for content that should be separate being inline with some structure.

3 / 5

Total

15

/

20

Passed

Description

65%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description is specific and highly distinctive thanks to the Stripe brand and enumerated targets, but it omits any explicit "when to use" trigger guidance and relies on a single generic action verb. Adding a Use-when clause and natural trigger phrases would materially improve it.

Suggestions

Add an explicit trigger clause, e.g. "Use when the user asks to upgrade, update, or migrate their Stripe integration, API version, webhooks, or Stripe SDKs."

Replace the single generic action ("Guide for upgrading") with several concrete actions, e.g. "Compares pinned API versions against a target, updates SDK configurations and webhook endpoint versions, and tests changes with the Stripe-Version header."

Include natural synonyms users would say ("update Stripe", "migrate", "bump the API version") to broaden trigger term coverage.

DimensionReasoningScore

Specificity

"Guide for upgrading Stripe API versions, webhook endpoints, server-side SDKs, Stripe.js, and mobile SDKs" names the domain and enumerates concrete scope items, but the only action offered is the generic "guide for upgrading" — matching the anchor for a clear domain with limited concrete actions rather than several specific actions.

3 / 5

Completeness

The description clearly answers "what" (upgrading Stripe API versions, webhook endpoints, and SDKs) but contains no "Use when..." clause or equivalent trigger guidance, which caps completeness at 3 per the judging guidelines.

3 / 5

Trigger Term Quality

Natural terms like "Stripe", "API versions", "webhook endpoints", "SDKs", and "Stripe.js" give good keyword coverage a user would plausibly say, but common variations such as "update", "migrate", or "bump the Stripe version" are missing.

4 / 5

Distinctiveness Conflict Risk

"Stripe" is a distinct brand niche and the enumerated targets (API versions, webhook endpoints, Stripe.js, mobile SDKs) are specific enough that the description is unlikely to trigger for an unrelated skill — a clear niche with minimal conflict risk.

5 / 5

Total

15

/

20

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
stripe/ai
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.