discover-api
Automatically discover API design skills when working with REST APIs, GraphQL schemas, API authentication, OAuth, JWT, rate limiting, API versioning, error handling, or endpoint design. Activates for backend API development tasks.
Works with
--- name: discover-api description: Automatically discover API design skills when working with REST APIs, GraphQL schemas, API authentication, OAuth, JWT, rate limiting, API versioning, error handling, or endpoint design. Activates for backend API development tasks. license: MIT --- # API Skills Discovery Provides automatic access to comprehensive API design, authentication, and implementation skills. ## When This Skill Activates This skill auto-activates when you're working with: - REST API design and implementation - GraphQL schema design - API authentication (JWT, OAuth 2.0, API keys, sessions) - API authorization (RBAC, ABAC, permissions) - Rate limiting and throttling - API versioning strategies - Error handling and validation - HTTP methods, status codes, endpoints ## Available Skills ### Quick Reference The API category contains 8 specialized skills: 1. **rest-api-design** - RESTful resource modeling, HTTP semantics, URL conventions 2. **graphql-schema-design** - GraphQL types, resolvers, N+1 problem prevention 3. **api-authentication** - JWT, OAuth 2.0, API keys, session management 4. **api-authorization** - RBAC, ABAC, policy engines, permission systems 5. **api-rate-limiting** - Token bucket, sliding window, rate limiting algorithms 6. **api-versioning** - API versioning, deprecation, backward compatibility 7. **api-error-handling** - RFC 7807 errors, validation, standardized responses 8. **api-design-rules** - 35 opinionated rules for API design ### Load Full Category Details For complete descriptions and workflows: Read ../api/INDEX.md This loads the full API category index with: - Detailed skill descriptions - Usage triggers for each skill - Common workflow combinations - Cross-references to related skills ### Load Specific Skills Load individual skills as needed: # Core API design Read ../api/rest-api-design.md Read ../api/graphql-schema-design.md # Security and access control Read ../api/api-authentication.md Read ../api/api-authorization.md # Production hardening Read ../api/api-rate-limiting.md Read ../api/api-error-handling.md Read ../api/api-versioning.md # Rules and best practices Read ../api/api-design-rules.md ## Common Workflows ### New REST API **Sequence**: REST design → Authentication → Authorization Read ../api/rest-api-design.md # Resource modeling, HTTP methods Read ../api/api-authentication.md # User authentication Read ../api/api-authorization.md # Access control ### New GraphQL API **Sequence**: GraphQL schema → Authentication → Authorization Read ../api/graphql-schema-design.md # Schema design, resolvers Read ../api/api-authentication.md # User authentication Read ../api/api-authorization.md # Field-level permissions ### API Hardening **Sequence**: Rate limiting → Error handling → Versioning Read ../api/api-rate-limiting.md # Prevent abuse Read ../api/api-error-handling.md # Standardized errors Read ../api/api-versioning.md # Manage evolution ### Complete API Stack **Full implementation from scratch**: # 1. Design phase Read ../api/rest-api-design.md # 2. Security phase Read ../api/api-authentication.md Read ../api/api-authorization.md Read ../api/api-rate-limiting.md # 3. Production readiness Read ../api/api-error-handling.md Read ../api/api-versioning.md ## Skill Selection Guide **Choose REST API skills when:** - Building traditional web services - Need simple CRUD operations - Working with mobile apps or SPAs - Require caching and HTTP semantics **Choose GraphQL skills when:** - Clients need flexible data fetching - Reducing over-fetching or under-fetching - Building aggregation layers - Need strong typing for APIs **Authentication vs Authorization:** - **Authentication** (api-authentication.md): Who are you? (Login, JWT, OAuth) - **Authorization** (api-authorization.md): What can you do? (Permissions, RBAC) **Production considerations:** - Always implement rate limiting for public APIs - Use versioning from day one - Standardize error responses early ## Integration with Other Skills API skills commonly combine with: **Database skills** (`discover-database`): - API endpoints → Database queries - Connection pooling for API servers - Query optimization for API performance **Testing skills** (`discover-testing`): - Integration tests for API endpoints - Contract testing for API consumers - Load testing for API performance **Frontend skills** (`discover-frontend`): - API client libraries - Data fetching patterns - Error handling in UI **Infrastructure skills** (`discover-infra`, `discover-cloud`): - API deployment strategies - Load balancing and scaling - API gateways and proxies ## Usage Instructions 1. **Auto-activation**: This skill loads automatically when Claude Code detects API-related work 2. **Browse skills**: Run `Read ../api/INDEX.md` for full category overview 3. **Load specific skills**: Use bash commands above to load individual skills 4. **Follow workflows**: Use recommended sequences for common API patterns 5. **Combine skills**: Load multiple skills for comprehensive coverage ## Progressive Loading This gateway skill (~200 lines, ~2K tokens) enables progressive loading: - **Level 1**: Gateway loads automatically (you're here now) - **Level 2**: Load category INDEX.md (~3K tokens) for full overview - **Level 3**: Load specific skills (~2-3K tokens each) as needed Total context: 2K + 3K + skill(s) = 5-10K tokens vs 25K+ for entire index. ## Quick Start Examples **"Design a REST API for a blog"**: Read ../api/rest-api-design.md **"Add OAuth authentication to my API"**: Read ../api/api-authentication.md **"Implement role-based access control"**: Read ../api/api-authorization.md **"Prevent API abuse"**: Read ../api/api-rate-limiting.md **"Design an API versioning strategy"**: Read ../api/api-versioning.md **Next Steps**: Run `Read ../api/INDEX.md` to see full category details, or load specific skills using the bash commands above.
More API Design skills
lark-event
larksuite/cli
Lark/Feishu real-time event listening / subscribing / consuming: stream events as NDJSON via `lark-cli event consume <EventKey>` (covers IM messages/reactions/chat changes, Approval status changes, Task updates, VC meeting started/joined/ended, Minutes generated, Whiteboard updated, etc.). Use for Lark bots, real-time message processing, long-running subscribers, streaming webhook/push handlers. Supports `--max-events` / `--timeout` bounded runs and a stderr ready-marker contract — designed for AI agents running as subprocesses.
lark-contact
larksuite/cli
飞书 / Lark 通讯录:按姓名 / 邮箱解析成 open_id,或按 open_id 反查姓名 / 部门 / 邮箱 / 联系方式 / 个人状态 / 签名,以及按关键词搜索当前用户可见的机器人 / 智能体(agent)。当用户提到一个名字要下一步发消息 / 排日程,或拿到 open_id 想查具体信息时使用。不负责部门树遍历、按部门列员工、组织架构图,这类需求走原生 OpenAPI。
lark-openapi-explorer
larksuite/cli
飞书/Lark 原生 OpenAPI 探索:从官方文档库中挖掘未经 CLI 封装的原生 OpenAPI 接口。当用户的需求无法被现有 lark-* skill 或 lark-cli 已注册命令满足,需要查找并调用原生飞书 OpenAPI 时使用。

