Dinobase Connector Builder
kappa90/dinobase
Writes a new Dinobase YAML connector for a REST API that has no verified dlt source, covering auth, pagination, read and write endpoints and incremental loading.
Perform a comprehensive audit of a Python package and produce a phased improvement plan saved to IMPROVEMENT.md.
$ npx skills add areed1192/interactive-brokers-api --skill package-audit -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install areed1192/interactive-brokers-api package-audit --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/areed1192/interactive-brokers-api.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.github/skills/package-audit .claude/skills/package-audit && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "package-audit" agent skill from https://github.com/areed1192/interactive-brokers-api/tree/master/.github/skills/package-audit into .claude/skills/package-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "package-audit", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/areed1192/interactive-brokers-api/tree/master/.github/skills/package-auditType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add areed1192/interactive-brokers-api --skill package-audit -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install areed1192/interactive-brokers-api package-audit --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/areed1192/interactive-brokers-api.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.github/skills/package-audit .agents/skills/package-audit && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "package-audit" agent skill from https://github.com/areed1192/interactive-brokers-api/tree/master/.github/skills/package-audit into .agents/skills/package-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "package-audit", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add areed1192/interactive-brokers-api --skill package-audit -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install areed1192/interactive-brokers-api package-audit --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/areed1192/interactive-brokers-api.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.github/skills/package-audit .cursor/skills/package-audit && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "package-audit" agent skill from https://github.com/areed1192/interactive-brokers-api/tree/master/.github/skills/package-audit into .cursor/skills/package-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "package-audit", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/areed1192/interactive-brokers-api.git --path .github/skills/package-audit--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add areed1192/interactive-brokers-api --skill package-audit -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install areed1192/interactive-brokers-api package-audit --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/areed1192/interactive-brokers-api.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.github/skills/package-audit .gemini/skills/package-audit && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "package-audit" agent skill from https://github.com/areed1192/interactive-brokers-api/tree/master/.github/skills/package-audit into .gemini/skills/package-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "package-audit", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install areed1192/interactive-brokers-api package-auditInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add areed1192/interactive-brokers-api --skill package-audit -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/areed1192/interactive-brokers-api.git skills-src && mkdir -p .github/skills && cp -r skills-src/.github/skills/package-audit .github/skills/package-audit && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "package-audit" agent skill from https://github.com/areed1192/interactive-brokers-api/tree/master/.github/skills/package-audit into .github/skills/package-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "package-audit", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add areed1192/interactive-brokers-api --skill package-audit -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install areed1192/interactive-brokers-api package-audit --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/areed1192/interactive-brokers-api.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.github/skills/package-audit .opencode/skills/package-audit && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "package-audit" agent skill from https://github.com/areed1192/interactive-brokers-api/tree/master/.github/skills/package-audit into .opencode/skills/package-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "package-audit", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
package-auditPerform a comprehensive audit of a Python package and produce a phased improvement plan saved to IMPROVEMENT.md.
Package Audit is an agent skill from areed1192/interactive-brokers-api. Perform a comprehensive audit of a Python package and produce a phased improvement plan saved to IMPROVEMENT.md. Use this skill whenever someone asks to review a Python package, audit a codebase, plan improvements, modernize a project, assess package quality, or produce an improvement roadmap. Trigger on phrases like "review this package", "audit my project", "what should I improve", "create an improvement plan", "make this package better", "is this project production-ready", "what's wrong with my package", or…
Its SKILL.md is about 2.9k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files, including reference files (for example `references/best-practices.md`).
It sits in Backend & APIs. It works with Python. The repository describes itself as: A python application used to interact with the Interactive Brokers REST API. The licence is MIT.
6 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 6d19ac2. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
pytestFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Package Audit loads about 2.9k tokens when it runs, and up to ~6.9k if it reads all its reference files. Until then it costs about 163 tokens; SKILL.md has 1,033 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from areed1192/interactive-brokers-api at commit 6d19ac2, republished under its MIT licence (© areed1192). 1,033 words, ~2,925 tokens.
.claude/skills/package-audit/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.This skill audits a Python package across eight dimensions, identifies issues, and
produces a prioritized, phased improvement plan saved to IMPROVEMENT.md. It does
not implement any changes — the output is a plan that the user can review and execute
in subsequent sessions.
Read the best-practices reference file:
cat references/best-practices.mdUse the checklist in that file as your scanning rubric.
This skill only produces a plan. Do not implement any changes. Every finding
goes into IMPROVEMENT.md as an unchecked action item. The user will execute
those items later, possibly using other specialized skills.
Before auditing, determine what kind of project this is. The project type shapes which audit dimensions apply and how the phased plan is organized.
Look at pyproject.toml, setup.py, the directory structure, and the README to
classify into one of:
[project] table, name on PyPI, from mypkg import ... in examples.[project.scripts] entry points, argparse/click/typer in the code,
README shows shell commands.uvicorn/gunicorn in dependencies, Dockerfile, API routes..ipynb files,
pandas/numpy/scikit-learn in deps, data/ or models/ directories.Note the classification at the top of the audit. Skip or adjust dimensions that don't apply (e.g., a CLI tool doesn't need a "convenience API" phase; an internal application doesn't need PyPI classifiers).
Systematically examine the project across these eight dimensions. Take notes as you go — you'll use them in Step 3.
Project structure
src/ vs flat)__init__.py completeness.pyc, __pycache__, .DS_Store,
*.egg-info)Packaging & metadata
pyproject.toml? If only setup.py, that's a finding.[project] include: name, version, description, readme,
requires-python, license, authors, classifiers, dependencies,
[project.urls]?[project.optional-dependencies])?Public API
__init__.py export?_)Test coverage
tests/ directory?pytest --cov=<package> --cov-report=term-missingDocumentation
CHANGELOG.md?CI/CD
.github/workflows/ directory (or GitLab/Bitbucket equivalent)?Security (run these checks if possible)
bandit -r <package>/ -q and note findingspip-audit or check for known vulnerable dependencieseval(), exec(),
shell=True in subprocess, pickle.load on untrusted data,
unsafe XML parsing (xml.etree instead of defusedxml)Code quality
from __future__ import annotations used (for 3.9 support)?print()?Save the audit and plan to IMPROVEMENT.md in the project root, following
this exact template:
# Improvement Plan
**Project type:** <Library / CLI tool / Web service / Internal app / Data/ML>
**Audit date:** <YYYY-MM-DD>
**Audited against:** [Keep a Changelog 1.1.0, Semantic Versioning 2.0.0,
PEP 621, pytest, bandit]
## Audit Summary
### Strengths
- What the project does well. Keep doing these.
- Be specific — "uses modern pyproject.toml with complete metadata" not "good packaging".
### Critical Issues
Security vulnerabilities, broken functionality, missing input validation, hardcoded
credentials. Each issue must cite the file and line number where applicable.
### Code Quality Issues
Inconsistent patterns, missing type hints, poor error handling, dead code.
### Missing Infrastructure
No tests, no CI, no linting, no changelog, outdated packaging.
### Feature Gaps
<Only if Step 1 classified this as a Library. Skip for other project types.>
Features missing compared to similar packages users would expect.
### Developer Experience Gaps
Poor README, no examples, verbose boilerplate, missing convenience features.
---
## Improvement Phases
### Phase 1: Foundation & Safety
Security fixes, input validation, exception handling, packaging modernization,
CI pipeline, basic test coverage.
- [ ] **P0 · S** — Add input validation to `parser.parse_url()` (`src/pkg/parser.py:42`)
to reject URLs with `file://` scheme
- [ ] **P0 · M** — Replace `xml.etree.ElementTree` with `defusedxml` for untrusted XML
parsing (`src/pkg/xml_reader.py`)
- [ ] **P1 · M** — Modernize packaging: migrate `setup.py` to `pyproject.toml` with
full `[project]` metadata
- [ ] **P1 · L** — Add GitHub Actions workflow: lint + test on push/PR
### Phase 2: Code Quality & Reliability
Type hints, consistent error handling, custom exceptions, logging, docstrings.
- [ ] **P1 · M** — Add type hints to all public functions in `src/pkg/api.py`
- [ ] **P1 · S** — Replace `print()` statements with `logging` (`src/pkg/cli.py:15-28`)
- [ ] **P2 · M** — Define custom exception hierarchy (`PkgError`, `PkgValidationError`,
`PkgConnectionError`)
### Phase 3: Developer Experience
<Skip for internal applications. Adapt heavily for CLI tools and web services —
these care more about user-facing docs than API ergonomics.>
README rewrite, examples, convenience API, sample files.
- [ ] **P1 · L** — Rewrite README with install/quick-start/example sections
- [ ] **P2 · M** — Add `examples/` directory with runnable usage scripts
### Phase 4: Ecosystem & Growth
<Only for libraries with a public user base. Skip for internal apps and new
projects that haven't hit 1.0 yet.>
Optional integrations, serialization helpers, async support, caching.
- [ ] **P2 · L** — Add optional pandas integration via `[project.optional-dependencies]`
- [ ] **P2 · L** — Provide async client under `pkg.aio` module
---
## Progress
| Phase | Status | Items Done | Items Total |
| ------- | ----------- | ---------- | ----------- |
| Phase 1 | Not started | 0 | N |
| Phase 2 | Not started | 0 | N |
| Phase 3 | Not started | 0 | N |
| Phase 4 | Not started | 0 | N |Every action item follows this exact format:
- [ ] **<Priority> · <Size>** — <Specific action with file path and/or line numbers>Priority:
Size:
Specificity rules:
src/pkg/parser.py:42 not "the parser"timeout parameter to fetch()"
not "improve the fetch method"If the project is a library and the user asked about feature gaps or ecosystem fit, search PyPI and GitHub for 2–3 similar packages. Compare:
Include findings under "Feature Gaps" with source citations.
For non-library projects, skip this step — it doesn't apply to CLI tools, internal apps, or web services in the same way.
After writing IMPROVEMENT.md, present a summary to the user:
Let the user know they can execute items in future sessions. If the project
needs logging improvements, changelog work, or test coverage work specifically,
mention the specialized skills that handle those (python-logging-reviewer,
changelog-review, test-coverage-review).
IMPROVEMENT.md.setup.py for
reasons visible in comments or commit history, note the modernization option
but don't treat it as critical.© areed1192, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 1 other file (references) in .github/skills/package-audit of areed1192/interactive-brokers-api.
Open the folder on GitHubat commit 6d19ac2
Package Audit next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Package Audit this skillareed1192/interactive-brokers-api | 103 | — | ~2.9k | Automated safety check: Pass | MIT | |
| Dinobase Connector Builderkappa90/dinobase | 263 | — | ~1.9k | Automated safety check: Pass | Custom licence | |
| Modaldavila7/claude-code-templates | 32k | 8 repos | ~2.6k | Automated safety check: Pass | MIT | |
| Junta Leiloeirossickn33/agentic-awesome-skills | 47k | 2 repos | ~1.6k | Automated safety check: Pass | MIT | |
| Testing Mwaa Workflowaws/agent-toolkit-for-aws | 2.8k | — | ~3.8k | Automated safety check: Pass | Apache-2.0 | |
| Python Projectmajiayu000/spellbook | 286 | — | ~2.7k | Automated safety check: Notes | MIT |
kappa90/dinobase
Writes a new Dinobase YAML connector for a REST API that has no verified dlt source, covering auth, pagination, read and write endpoints and incremental loading.
davila7/claude-code-templates
Run Python code in the cloud with serverless containers, GPUs, and autoscaling.
sickn33/agentic-awesome-skills
Coleta e consulta dados de leiloeiros oficiais de todas as 27 Juntas Comerciais do Brasil.
aws/agent-toolkit-for-aws
Tests Amazon MWAA workflow execution end-to-end: trigger a run and monitor it to completion for Provisioned (Python DAG, via Airflow REST API) and Serverless (YAML workflow, via StartWorkflowRun).
majiayu000/spellbook
Modern Python project architecture guide for 2025. An agent skill from majiayu000/spellbook.
ArabelaTso/Skills-4-SE
Quickly analyzes Python repositories to understand their purpose, structure, and setup requirements.
areed1192/interactive-brokers-api
Audit, enforce, and maintain changelogs in Python projects. An agent skill from areed1192/interactive-brokers-api.
areed1192/interactive-brokers-api
Audit, plan, and fix logging in any Python project. An agent skill from areed1192/interactive-brokers-api.
Works with
Categories
Perform a comprehensive audit of a Python package and produce a phased improvement plan saved to IMPROVEMENT.md. Package Audit is an agent skill from areed1192/interactive-brokers-api.md.
Package Audit fits situations like: someone asks to review a Python package; audit a codebase; plan improvements; modernize a project.
Run `npx skills add areed1192/interactive-brokers-api --skill package-audit -a claude-code`. Or copy the skill folder (.github/skills/package-audit in areed1192/interactive-brokers-api) into .claude/skills/package-audit in your project. Claude Code loads it when a task matches its description.
Run `npx skills add areed1192/interactive-brokers-api --skill package-audit -a codex`. Or copy the skill folder (.github/skills/package-audit in areed1192/interactive-brokers-api) into .agents/skills/package-audit in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add areed1192/interactive-brokers-api --skill package-audit -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/package-audit, .gemini/skills/package-audit, .github/skills/package-audit and .opencode/skills/package-audit in your project.
Going by SKILL.md and its folder, Package Audit needs the command-line tools its instructions call (pytest). Our summary lists: Python 3.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Package Audit is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.9k tokens (SKILL.md is roughly 12k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 4k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Package Audit: Dinobase Connector Builder (kappa90/dinobase, 263 stars), Modal (davila7/claude-code-templates, 32k stars), Junta Leiloeiros (sickn33/agentic-awesome-skills, 47k stars) and Testing Mwaa Workflow (aws/agent-toolkit-for-aws, 2.8k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
areed1192 (a GitHub user) maintains it in areed1192/interactive-brokers-api, which has 103 GitHub stars. The repository holds 3 skills in this directory. The repository was last updated on July 24, 2026.
Source: areed1192/interactive-brokers-api on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.