Agent skill

Arandu Shared Modules Guide

by arandu-io in arandu-io/arandu

Decides whether a feature belongs in the application or in one of five shared Arandu modules before adding permissions, wallets, tags, Markdown rendering or API docs.

MITAuto-check passedBackend & APIs

Install Arandu Shared Modules Guide

skills CLI
$ npx skills add arandu-io/arandu --skill arandu-ecosystem -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install arandu-io/arandu arandu-ecosystem --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/arandu-io/arandu.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/arandu-ecosystem .claude/skills/arandu-ecosystem && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
arandu-ecosystem
GitHub stars
281
Token cost
~1.8k tokens
SKILL.md length
848 words
Files
1
Skills in repo
12
Repo updated
First seen
Licence
MIT

At a glance

Decides whether a feature belongs in the application or in one of five shared Arandu modules before adding permissions, wallets, tags, Markdown rendering or API docs.

  • Works in 3 steps: AGENTS.md, then arandu-feature. → bootstrap/app.go: what Build constructs… → github.com/arandu-io/examples, the…
  • Adding roles, groups or membership checks to an Arandu-based app
  • SKILL.md covers When to use, Before you start, Contracts and imports and Procedure, plus 8 more sections
  • Calls go and bash

What it does

Five responsibilities already have Arandu modules: permission groups and their admin screens, wallets with deposits, transfers and the ledger, tags that attach to any record, sanitized Markdown with table of contents and reading time, and an OpenAPI 3.1 document with Swagger UI built from the route table. Writing a second implementation inside the project is the mistake this procedure exists to stop, because the two copies drift apart.

The agent first reads what is already there: AGENTS.md and the other skills, `bootstrap/app.go` to see which modules are registered, the `notes` resource as the worked example of the controller, service, policy and grant path, the tenant-scope test that proves one tenant's records are invisible to another, and the public examples app. Before writing a migration it answers questions about whether the data is a login identity or organization-owned, which tenant owns each row, and which policy action authorizes reads and writes, then routes to the matching module.

When your agent uses it

  • Adding roles, groups or membership checks to an Arandu-based app
  • Introducing credits, points or any balance that can be spent
  • Adding tags, categories or labels to existing records
  • Rendering Markdown or publishing OpenAPI docs for the HTTP routes

Example prompts

  • “We need workspace members with admin and viewer roles. Should this go in the app or a shared module?”
  • “Add a credits balance to each organization and make sure it can be refunded.”
  • “Expose Swagger docs for our routes without writing a new OpenAPI generator.”

Requirements

  • A project generated from the Arandu skeleton

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. AGENTS.md, then arandu-feature.
  2. bootstrap/app.go: what Build constructs and passes to k.Register is
  3. github.com/arandu-io/examples, the public reference application, before

What it can do on your machine

Read from SKILL.md and the folder at commit b8a4273. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • go
    • bash

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Arandu Shared Modules Guide loads about 1.8k tokens when it runs. Until then it costs about 153 tokens; SKILL.md has 848 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~153
When it runs · the whole SKILL.md, loaded when a task matches
~1.8k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from arandu-io/arandu at commit b8a4273, republished under its MIT licence (© arandu-io). 848 words, ~1,839 tokens.

Download SKILL.mdSave it as .claude/skills/arandu-ecosystem/SKILL.md (or your agent's skills folder).
name
arandu-ecosystem
description
Decide whether a feature belongs in this application or in a shared Arandu module, before adding or changing authorization, roles, organizations or tenants, balances, credits or any spendable unit, tags or labels, rendered Markdown, API documentation, Brazilian documents and money (CPF, CNPJ, BRL), or a helper such as a slug or a currency format. Use when a request mentions permissions, groups, members, workspaces, wallet, ledger, credits, points, tags, categories, Markdown, OpenAPI or Swagger, CPF/CNPJ, or when about to create a table, a package or a helper something else would also need.
license
MIT

Using what the ecosystem already owns

When to use

Before the first table, package or helper of a feature: something else may own it already. Writing a second one here works on day one, and from then on two implementations drift. A capability this application really owns goes on to arandu-module.

Before you start

  1. AGENTS.md, then arandu-feature.
  2. bootstrap/app.go: what Build constructs and passes to k.Register is everything the application was given. A module not registered there is a module the application does not have.
  3. github.com/arandu-io/examples, the public reference application, before inventing a shape.

Contracts and imports

responsibilityownerit owns
who may do what inside an organizationgithub.com/hyz-is/arandu-permissionpermission groups, actions, members of a group, the screens that administer them; it fills the subject's roles, and this application's policies still decide
anything with a balancegithub.com/hyz-is/arandu-walletwallets, deposits, withdrawals, transfers, credits, holds, refunds, the ledger and statements, idempotency keys
labels on recordsgithub.com/hyz-is/arandu-tagstags, their ordering, attaching tags to any record
Markdown a page showsgithub.com/hyz-is/arandu-markdownsanitized HTML, the table of contents, plain text, reading time
OpenAPI for the HTTP routesgithub.com/hyz-is/arandu-swaggeran OpenAPI 3.1 document built from the route table, Swagger UI served from the same origin
CPF, CNPJ, CEP, BRL, Brazilian datesgithub.com/hyz-is/arandu-brvalidation rules and pure formatting functions
a helperthe package functions of github.com/arandu-io/hesape: support, str, number, collections, paginationslugs, currency, plurals, collections -- called by package name, never global

The flow of an organization's data is fixed: login identity -> membership -> organization (the tenant) -> subject -> Policy -> auth.Grant -> auth.Tenant(g) -> the row.

Procedure

  1. Answer these before a migration, in writing:

    1. Is this the login identity, or data an organization owns?
    2. Which tenant owns each row? It comes from auth.Tenant(g).
    3. Which policy action authorizes the read, and which the write?
    4. Is it access control? arandu-permission.
    5. Does any number in it go up and down and get spent? arandu-wallet.
    6. Is it a label a user attaches? arandu-tags.
    7. Is a field Markdown a page renders? arandu-markdown.
    8. Does it expose an HTTP API someone else calls? arandu-swagger.
    9. Is it a Brazilian document or amount? arandu-br.
    10. Would the next project need the same thing? Then it is a module (step 4).
  2. Use the owner. A role is arandu-permission's, never a role column or an ACL table; a balance is arandu-wallet's, never a balance column, a credits table or a *_ledger. This application may own the commercial side -- a catalog, prices, a contract with a payment provider -- and calls the wallet to move value.

  3. Install a module the same way for all of them, from the latest release in hyz-is, never with a replace to a local checkout:

    bash
    go get github.com/hyz-is/arandu-wallet@<tag>

    Construct it in Build, after the session store exists, with the tenant from cfg.Auth.Tenant and the CSRF issuer Build already made; add it to the Register(...) list; then aru migrate, and preview what it publishes with aru vendor:publish --tag=view before --apply. Each module's README has its exact Config.

  4. When no module owns it, stop and report: name the capability, the modules checked, why none owns it, and whether one should be extended. A new reusable capability starts from github.com/arandu-io/package-skeleton as a hyz-is/arandu-* module, with its public contract defined before any application embeds it. Only what belongs to this application alone is generated here.

Show full SKILL.md (299 more words)Show less

Commands

  • aru migrate, for the tables a module brings
  • aru vendor:publish --tag=view, then aru vendor:publish --tag=view --apply, then aru view:build
  • aru about, what the project is wired with
  • aru skills:sync, the skills a required hyz-is module hands out, with --apply to write them

Example

The helpers are package functions of hesape, called by name -- never written again here:

go
package example

import (
	"github.com/arandu-io/hesape/number"
	"github.com/arandu-io/hesape/str"
)

// Listing is how a record is addressed and priced on a page: a slug for the
// address and a currency for the amount, held in cents.
func Listing(title string, cents int64) (slug, price string) {
	return str.Slug(title, "-"), number.CurrencyFromCents(cents, "USD")
}

Do not

  • Create a role, is_admin, balance or credits column, a tags table, a Markdown renderer or a hand-kept OpenAPI file.
  • Write a Slugify, a CPF validator or a BRL formatter in the application: helper-reimplemented.
  • Point go.mod at a local checkout with replace, or work around a module's defect in the application: fix it in the module's repository.
  • Take an organization id from a form as the tenant. It is navigation intent; the tenant comes from the Grant.

Extending it

A module's screens are published into the project with aru vendor:publish and edited there, inside their custom blocks. A primitive a module lacks is added to the module, by its repository and a release -- never as a local substitute.

Wiring

Explicit, in bootstrap/app.go: constructed in Build, registered in the Register(...) list -- arandu-swagger last, after the modules whose routes it documents. Migrations run through aru migrate, never at boot.

Acceptance test

  • Every new table with a tenant column claimed in tests/Feature/TenantScope_test.go, with a cross-tenant test.
  • Nothing in the diff is a second copy of what an owner above holds.
  • aru doctor reports no driver-not-linked, helper-reimplemented or skills-missing.

Limits

This skeleton requires none of the hyz-is modules: a project takes the ones it needs. The list above is the set that exists today; a capability not in it is a report, not a license to build it here.

Gates

Run them all, in this order, as AGENTS.md lists them:

sh
export GOWORK=off
aru model:build --check
aru view:build
gofmt -l $(find . -name '*.go' -not -path '*/testdata/*' -not -name '*.kyse.go')
go vet ./...
bash tests/test-layout-guard.sh
go test -race ./...
go build ./...
aru doctor
<!-- arandu:begin custom -->
<!-- arandu:end custom -->

© arandu-io, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .agents/skills/arandu-ecosystem of arandu-io/arandu.

Open the folder on GitHubat commit b8a4273

Compare with similar skills

Arandu Shared Modules Guide next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Arandu Shared Modules Guide compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Arandu Shared Modules Guide this skillarandu-io/arandu281—~1.8kAutomated safety check: PassMIT
Crud AutomatorElsiKora/NestJS-Crud-Automator261—~6.7kAutomated safety check: PassMIT
defineRoute Route Builderbighadj22/codflow354—~924Automated safety check: PassApache-2.0
Add API Resourcewso2/agent-manager108—~1.1kAutomated safety check: PassApache-2.0
Golang Swaggercontext-labs/whip1.1k2 repos~2.3kAutomated safety check: PassMIT
API And Namespace Designiflytek/skillhub5.2k—~1.3kAutomated safety check: PassApache-2.0

Similar skills

  • Crud Automator

    ElsiKora/NestJS-Crud-Automator

    Design, audit, document, refactor, and implement NestJS CRUD Automator resources using @elsikora/nestjs-crud-automator.

    261 GitHub stars~6.7k tokensUpdated 18 days ago
    Backend & APIsAuto-check passed
  • defineRoute Route Builder

    bighadj22/codflow

    Creates new API endpoints, and converts older ones, with the defineRoute() pattern used in cod-server, including auth strategies, scopes and OpenAPI output.

    354 GitHub stars~924 tokensUpdated 5 days ago
    Backend & APIsAuto-check passed
  • Add API Resource

    wso2/agent-manager

    Add or change a REST API resource in agent-manager-service (the Go control plane).

    108 GitHub stars~1.1k tokensUpdated 2 days ago
    Backend & APIsAuto-check passed
  • Golang Swagger

    context-labs/whip

    Golang OpenAPI/Swagger docs with swaggo/swag — annotations (@Summary, @Param, @Success, @Router, @Security), swag init, framework integrations (gin, echo, fiber, chi), security definitions, struct…

    1.1k GitHub starsUsed in 2 repos~2.3k tokens
    Backend & APIsAuto-check passed
  • API And Namespace Design

    iflytek/skillhub

    API design conventions, namespace coordinate system, RBAC roles, ClawHub compatibility layer, OpenAPI contract sync rules, and CSRF/session handling.

    5.2k GitHub stars~1.3k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Official

    Guides PostHog engineers through dashboard widget platform work — ship a new widgettype (WIDGETREGISTRY, catalog, runwidgets, WidgetCard) or update a shipped type (config, query, layout, RBAC, tile…

    40k GitHub stars~2.3k tokensUpdated yesterday
    Backend & APIsAuto-check passed

More from arandu-io/arandu

All 12 skills in this repo
  • Arandu API

    arandu-io/arandu

    Answering a program rather than a person in an Arandu (Go) application -- a JSON Resource, a JSON answer from the same routes the pages use, problem+json errors, bearer-token authentication and…

    281 GitHub stars~2.5k tokensUpdated yesterday
    Auto-check passed
  • Arandu Async

    arandu-io/arandu

    Work that does not happen inside the request in an Arandu (Go) application -- background jobs and the worker, scheduled tasks, domain events through the outbox, listeners, notifications, mail and…

    281 GitHub stars~2.7k tokensUpdated yesterday
    Auto-check passed
  • Arandu Feature

    arandu-io/arandu

    Start here for any change to an Arandu (Go) application that adds or changes behaviour -- "add invoices", "let users publish a post", "send a weekly report", "call the payment provider", "expose…

    281 GitHub stars~2.5k tokensUpdated yesterday
    Auto-check passed
  • Arandu HTTP

    arandu-io/arandu

    Controllers, requests and routes of an Arandu (Go) application -- the seven resource actions, a resource nested under another, a singleton, a single-action (invokable) controller, a named action…

    281 GitHub stars~2.5k tokensUpdated yesterday
    Auto-check passed
  • Arandu Integrations

    arandu-io/arandu

    Reaching other systems from an Arandu (Go) application, and letting them reach it -- the client of an external API with its interface and fake, webhooks sent and received, and tools, resources and…

    281 GitHub stars~3.1k tokensUpdated yesterday
    Auto-check passed
  • Arandu Module Generator

    arandu-io/arandu

    Adds a new entity, resource or CRUD module to an Arandu Go application by writing a YAML specification instead of hand-writing the Go code.

    281 GitHub stars~2.4k tokensUpdated yesterday
    Auto-check passed

Works with

Categories

Questions about Arandu Shared Modules Guide

What does Arandu Shared Modules Guide do?

Decides whether a feature belongs in the application or in one of five shared Arandu modules before adding permissions, wallets, tags, Markdown rendering or API docs. 1 document with Swagger UI built from the route table. Writing a second implementation inside the project is the mistake this procedure exists to stop, because the two copies drift apart.

When should I use Arandu Shared Modules Guide?

Arandu Shared Modules Guide fits situations like: adding roles, groups or membership checks to an Arandu-based app; introducing credits, points or any balance that can be spent; adding tags, categories or labels to existing records; rendering Markdown or publishing OpenAPI docs for the HTTP routes.

How do I install Arandu Shared Modules Guide in Claude Code?

Run `npx skills add arandu-io/arandu --skill arandu-ecosystem -a claude-code`. Or copy the skill folder (.agents/skills/arandu-ecosystem in arandu-io/arandu) into .claude/skills/arandu-ecosystem in your project. Claude Code loads it when a task matches its description.

How do I install Arandu Shared Modules Guide in Codex?

Run `npx skills add arandu-io/arandu --skill arandu-ecosystem -a codex`. Or copy the skill folder (.agents/skills/arandu-ecosystem in arandu-io/arandu) into .agents/skills/arandu-ecosystem in your project. Codex loads it when a task matches its description.

Can I use Arandu Shared Modules Guide in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add arandu-io/arandu --skill arandu-ecosystem -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/arandu-ecosystem, .gemini/skills/arandu-ecosystem, .github/skills/arandu-ecosystem and .opencode/skills/arandu-ecosystem in your project.

What does Arandu Shared Modules Guide need to run?

Going by SKILL.md and its folder, Arandu Shared Modules Guide needs the command-line tools its instructions call (go and bash). Our summary lists: A project generated from the Arandu skeleton.

Does Arandu Shared Modules Guide access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Arandu Shared Modules Guide safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Arandu Shared Modules Guide use?

Arandu Shared Modules Guide is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Arandu Shared Modules Guide use?

About 1.8k tokens (SKILL.md is roughly 7.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Arandu Shared Modules Guide?

Skills that share tags, products or a category with Arandu Shared Modules Guide: Crud Automator (ElsiKora/NestJS-Crud-Automator, 261 stars), defineRoute Route Builder (bighadj22/codflow, 354 stars), Add API Resource (wso2/agent-manager, 108 stars) and Golang Swagger (context-labs/whip, 1.1k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Arandu Shared Modules Guide?

arandu-io (a GitHub organization) maintains it in arandu-io/arandu, which has 281 GitHub stars. The repository holds 12 skills in this directory. The repository was last updated on October 10, 2026.

Source: arandu-io/arandu on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.