CtrlK
BlogDocsLog inGet started
Tessl Logo

web-storage

Use when reviewing scripts, client components, bundles, or runtime behavior related to Use Web Storage API safely. Inspect both source code and the browser execution path so fixes target the real bottleneck or bug.

49

Quality

53%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

Fix and improve this skill with Tessl

tessl review fix ./skills/web-storage/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

57%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The skill body is a concise, well-structured overview with excellent progressive disclosure — details are appropriately split into a single, clearly signaled reference file. However, it explains basics Claude already knows, includes no executable code of its own, and its Check/Fix workflow lacks explicit validation checkpoints, leaving it more of a checklist prompt than a fully actionable guide.

Suggestions

Trim the opening paragraph about quota limits and private-browsing behavior — Claude already knows this — and keep only non-obvious guidance.

Add one minimal executable snippet to the body (e.g., a try/catch localStorage wrapper) or move the reference's wrapper example up so fixes are copy-paste ready.

Replace the templated 'in this file' phrasing in the Check section with concrete review scope (which files/patterns to search, e.g., grep for localStorage/sessionStorage) and add an explicit verification step after fixes.

DimensionReasoningScore

Conciseness

The body is mostly lean, but the opening paragraph re-explains concepts Claude already knows ('localStorage and sessionStorage have a 5–10 MB quota per origin, and any write can throw a QuotaExceededError. Private browsing modes in some browsers disable storage entirely'), and the templated Check/Fix/Explain prose could be tightened.

3 / 5

Actionability

Quick Reference gives concrete directives ('Always wrap localStorage access in try/catch', 'Serialize objects with JSON.stringify', 'use httpOnly cookies'), but the body contains no executable code or commands — the Fix section only says 'Add try/catch error handling to all Web Storage operations', and 'Find all localStorage and sessionStorage accesses in this file' is ambiguous templating. Guidance is actionable in direction but incomplete in executable detail.

3 / 5

Workflow Clarity

Check → Fix → Explain → Code Review provides a rough sequence and Code Review gestures at verification ('state how the change should be verified in the browser'), but there are no explicit validation checkpoints and section guidance is generic. Fits anchor 3 (sequence present, checkpoints missing or implicit), not 4.

3 / 5

Progressive Disclosure

A ~30-line, well-sectioned overview that correctly defers bulk material to a clearly signaled, one-level-deep reference ('For full implementation details, code examples, and framework-specific guidance, see references/rule.md'), which exists (121 lines) with code examples. Matches the clear-overview/well-signaled-reference anchor.

5 / 5

Total

14

/

20

Passed

Description

50%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description has an explicit 'Use when...' trigger and a recognizable domain, but it conflates 'what' and 'when' into a single templated clause, omits the natural trigger terms (localStorage, sessionStorage), and uses review-scope wording broad enough to collide with general frontend review skills. It is serviceable but sits at the midpoint on all dimensions.

Suggestions

State what the skill does explicitly before the trigger, e.g., 'Reviews localStorage/sessionStorage usage for missing try/catch, unsafe serialization, and sensitive-data leaks. Use when...'

Add the natural trigger terms users would say — 'localStorage', 'sessionStorage', 'storage quota', 'QuotaExceededError' — to improve keyword coverage.

Narrow the trigger scope ('scripts, client components, bundles, or runtime behavior' is broad enough to collide with general frontend review skills) to storage-specific contexts.

DimensionReasoningScore

Specificity

Names the domain and two concrete actions ('reviewing scripts, client components, bundles, or runtime behavior' and 'Inspect both source code and the browser execution path') but is not comprehensive — the skill's actual capabilities (try/catch wrapping, serialization, sensitive-data checks) are never named. Fits anchor 3, not 4, due to the coverage gaps.

3 / 5

Completeness

The 'when' is explicit ('Use when reviewing scripts, client components, bundles, or runtime behavior related to Use Web Storage API safely') but the 'what' is only weakly implied — 'related to Use Web Storage API safely' embeds a rule name rather than stating capabilities. Fits anchor 3 (clear 'what' missing or only weakly implied), not 4, since there is no separate capability statement.

3 / 5

Trigger Term Quality

Some relevant keywords are present ('scripts', 'client components', 'browser', 'Web Storage API'), but the natural terms users would actually say — 'localStorage', 'sessionStorage', 'quota' — are missing. Fits anchor 3 (relevant keywords but missing common variations or synonyms), not 4.

3 / 5

Distinctiveness Conflict Risk

'reviewing scripts, client components, bundles, or runtime behavior' is broad and overlaps with generic frontend code-review skills; only the Web Storage mention narrows it. Fits anchor 3 (somewhat specific but could still overlap with similar skills), not 4, given the wide review-scope triggers.

3 / 5

Total

12

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

metadata_version

'metadata.version' is missing

Warning

Total

15

/

16

Passed

Repository
thedaviddias/Front-End-Checklist
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.