Agent skill

Validation Scopes

by atherio-danp in atherio-danp/cde-dotnetcc

Place validation in the correct one of our three scopes in the .NET API — API contract (no DB), Application business via Kommand IValidator, or Domain invariants that throw.

No licenceAuto-check: notesBackend & APIs

Install Validation Scopes

skills CLI
$ npx skills add atherio-danp/cde-dotnetcc --skill validation-scopes -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install atherio-danp/cde-dotnetcc validation-scopes --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/atherio-danp/cde-dotnetcc.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/validation-scopes .claude/skills/validation-scopes && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
validation-scopes
GitHub stars
109
Token cost
~927 tokens
SKILL.md length
346 words
Files
1
Skills in repo
13
Repo updated
First seen
Licence
None found

At a glance

Place validation in the correct one of our three scopes in the .NET API — API contract (no DB), Application business via Kommand IValidator, or Domain invariants that throw.

  • Works in 3 steps: Is it pure shape / required-field /… → Does it need data or business… → Is it an invariant that must hold for…
  • Adding any validation/guard
  • SKILL.md covers Procedure — placing a check and Don'ts
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Validation Scopes is an agent skill from atherio-danp/cde-dotnetcc. Place validation in the correct one of our three scopes in the .NET API — API contract (no DB), Application business via Kommand IValidator, or Domain invariants that throw. Use when adding any validation/guard, or deciding where a check belongs.

Its SKILL.md is about 930 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Backend & APIs, covering API design. It works with .NET. The repository describes itself as: Claude Code harness for .NET developers.

When your agent uses it

  • Adding any validation/guard
  • Deciding where a check belongs

Example prompts

  • “/validation-scopes”

Requirements

  • Pre-approved tools (allowed-tools): Read, Glob, Grep, Edit, Write, Bash, Skill, mcp__serena__initial_instructions, mcp__serena__get_symbols_overview, mcp__serena__find_symbol, mcp__serena__find_referencing_symbols, mcp__serena__find_declaration, mcp__serena__find_implementations, mcp__serena__search_for_pattern, mcp__serena__get_diagnostics_for_file, mcp__serena__list_dir, mcp__serena__find_file, mcp__serena__create_text_file, mcp__serena__replace_symbol_body, mcp__serena__insert_after_symbol, mcp__serena__insert_before_symbol, mcp__serena__replace_content, mcp__serena__rename_symbol, mcp__serena__safe_delete_symbol

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. Is it pure shape / required-field / JWT-derivable authz, with no DB? → Contract (API). Hand-roll the
  2. Does it need data or business understanding? → Business. Add a IValidator beside the
  3. Is it an invariant that must hold for the object to exist or change? → Invariant. Enforce it inside

What it can do on your machine

Read from SKILL.md and the folder at commit c72a3f9. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Read
    • Glob
    • Grep
    • Edit
    • Write
    • Bash
    • Skill
    • mcp__serena__initial_instructions
    • mcp__serena__get_symbols_overview
    • mcp__serena__find_symbol

    …and 14 more on the same allowed-tools line.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Validation Scopes loads about 927 tokens when it runs. Until then it costs about 66 tokens; SKILL.md has 346 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~66
When it runs · the whole SKILL.md, loaded when a task matches
~927

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NotePre-approves every shell command (allowed-tools: Bash)SKILL.md
    allowed-tools: Read, Glob, Grep, Edit, Write, Bash, Skill, mcp__serena__initial_instructions, mcp__serena__get_symb

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 346 words (~927 tokens).

“Validation is three distinct concerns; put each check in the right one. Source of truth (the facts — read them): .claude/rules/backend/api-design.md (§4.1), cqrs-kommand.md, domain-model.md, and docs/projectStandards/backend-architecture.md §4.1. We do NOT use FluentValidation or any validation library. C# (.cs) edits via…”

— opening of SKILL.md by atherio-danp
name
validation-scopes
allowed-tools
Read, Glob, Grep, Edit, Write, Bash, Skill, mcp__serena__initial_instructions, mcp__serena__get_symbols_overview, mcp__serena__find_symbol, mcp__serena__find_referencing_symbols, mcp__serena__find_declaration, mcp__serena__find_implementations, mcp__serena__search_for_pattern, mcp__serena__get_diagnostics_for_file, mcp__serena__list_dir, mcp__serena__find_file, mcp__serena__create_text_file, mcp__serena__replace_symbol_body, mcp__serena__insert_after_symbol, mcp__serena__insert_before_symbol, mcp__serena__replace_content, mcp__serena__rename_symbol, mcp__serena__safe_delete_symbol

Read the full SKILL.md on GitHub

Files

Just SKILL.md in .claude/skills/validation-scopes of atherio-danp/cde-dotnetcc.

Open the folder on GitHubat commit c72a3f9

Compare with similar skills

Validation Scopes next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Validation Scopes compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Validation Scopes this skillatherio-danp/cde-dotnetcc109—~927Automated safety check: NotesNone
.NET API Compatibility DesignAaronontheweb/dotnet-skills1.2k2 repos~2.7kAutomated safety check: PassMIT
.NET Aspire Explicit ConfigurationAaronontheweb/dotnet-skills1.2k1 repos~1.3kAutomated safety check: PassMIT
Csharp Nullable Reference TypesAaronontheweb/dotnet-skills1.2k1 repos~2.9kAutomated safety check: PassMIT
Generate Testability Wrappersdotnet/skills5.6k1 repos~3.9kAutomated safety check: PassMIT
SDK Conventionsaws/aws-sdk-net145—~6.3kAutomated safety check: PassApache-2.0

Similar skills

  • .NET API Compatibility Design

    Aaronontheweb/dotnet-skills

    Applies extend-only design rules to NuGet packages and distributed systems, covering source, binary and wire compatibility and how to deprecate members safely.

    1.2k GitHub starsUsed in 2 repos~2.7k tokens
    Backend & APIsAuto-check passed
  • .NET Aspire Explicit Configuration

    Aaronontheweb/dotnet-skills

    Wires .NET Aspire AppHost resources into explicit environment-variable configuration, keeping application code free of Aspire client packages and service discovery.

    1.2k GitHub starsUsed in 1 repo~1.3k tokens
    Backend & APIsAuto-check passed
  • Csharp Nullable Reference Types

    Aaronontheweb/dotnet-skills

    Guidelines for introducing and using nullable reference types (NRT) and System.Diagnostics.CodeAnalysis nullable attributes in C / .NET codebases.

    1.2k GitHub starsUsed in 1 repo~2.9k tokens
    Backend & APIsAuto-check passed
  • Official

    DO NOT USE when the target already consumes an injected interface or built-in abstraction such as IFileSystem or TimeProvider, even if the request says "generate a wrapper"; no new wrapper is needed.

    5.6k GitHub starsUsed in 1 repo~3.9k tokens
    Backend & APIsAuto-check passed
  • SDK Conventions

    aws/aws-sdk-net

    Official

    The public-API contract SmithyDotNet-generated code must match against the shipping AWS SDK for .NET - what must match vs.

    145 GitHub stars~6.3k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Official

    Generate wrapper interfaces and DI registration for hard-to-test static dependencies in C.

    1k GitHub stars~2.2k tokensUpdated today
    Backend & APIsAuto-check passed

More from atherio-danp/cde-dotnetcc

All 13 skills in this repo
  • MCP Csharp

    atherio-danp/cde-dotnetcc

    Create, debug, test, and publish MCP (Model Context Protocol) servers in C using the official ModelContextProtocol SDK — tools/prompts/resources, stdio vs HTTP transport, MapMcp hosting.

    109 GitHub stars~1.2k tokensUpdated 2 mo ago
    Auto-check: notes
  • Microbenchmarking

    atherio-danp/cde-dotnetcc

    Create, run, configure, and interpret BenchmarkDotNet microbenchmarks in the .NET API — measure and compare approaches, runtime configs, or package versions.

    109 GitHub stars~979 tokensUpdated 2 mo ago
    Auto-check: notes
  • Otel Instrumentation

    atherio-danp/cde-dotnetcc

    Add or change OpenTelemetry tracing, metrics, and structured logging in the .NET API (apps/api) — OTLP exporter setup, custom ActivitySource spans, IMeterFactory metrics, log/trace correlation.

    109 GitHub stars~1.3k tokensUpdated 2 mo ago
    Auto-check: notes
  • Dotnet AI Stack

    atherio-danp/cde-dotnetcc

    Choose and wire AI features in the .NET backend — LLM calls, agentic tool-calling/multi-step workflows, RAG/vector search, structured output, streaming.

    109 GitHub stars~1.2k tokensUpdated 2 mo ago
    Auto-check: notes
  • Dotnet Performance Review

    atherio-danp/cde-dotnetcc

    Scan .NET/C code for performance anti-patterns (async, memory/strings, collections/LINQ, regex, serialization, I/O) with tiered severity, reporting findings without editing.

    109 GitHub stars~1k tokensUpdated 2 mo ago
    Auto-check: notes
  • Efcore Patterns

    atherio-danp/cde-dotnetcc

    Add or change EF Core (Npgsql/PostgreSQL) persistence in the .NET backend — entities, EF configurations, repositories, queries, migrations.

    109 GitHub stars~1k tokensUpdated 2 mo ago
    Auto-check: notes

Works with

Categories

Questions about Validation Scopes

What does Validation Scopes do?

Place validation in the correct one of our three scopes in the .NET API — API contract (no DB), Application business via Kommand IValidator, or Domain invariants that throw. Validation Scopes is an agent skill from atherio-danp/cde-dotnetcc.NET API — API contract (no DB), Application business via Kommand IValidator, or Domain invariants that throw.

When should I use Validation Scopes?

Validation Scopes fits situations like: adding any validation/guard; deciding where a check belongs.

How do I install Validation Scopes in Claude Code?

Run `npx skills add atherio-danp/cde-dotnetcc --skill validation-scopes -a claude-code`. Or copy the skill folder (.claude/skills/validation-scopes in atherio-danp/cde-dotnetcc) into .claude/skills/validation-scopes in your project. Claude Code loads it when a task matches its description.

How do I install Validation Scopes in Codex?

Run `npx skills add atherio-danp/cde-dotnetcc --skill validation-scopes -a codex`. Or copy the skill folder (.claude/skills/validation-scopes in atherio-danp/cde-dotnetcc) into .agents/skills/validation-scopes in your project. Codex loads it when a task matches its description.

Can I use Validation Scopes in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add atherio-danp/cde-dotnetcc --skill validation-scopes -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/validation-scopes, .gemini/skills/validation-scopes, .github/skills/validation-scopes and .opencode/skills/validation-scopes in your project.

What does Validation Scopes need to run?

SKILL.md names no scripts, command-line tools or credentials: Validation Scopes is instructions for the agent only. Its frontmatter pre-approves these tools: Read, Glob, Grep, Edit, Write, Bash, Skill, mcp__serena__initial_instructions, mcp__serena__get_symbols_overview, mcp__serena__find_symbol, mcp__serena__find_referencing_symbols, mcp__serena__find_declaration, mcp__serena__find_implementations, mcp__serena__search_for_pattern, mcp__serena__get_diagnostics_for_file, mcp__serena__list_dir, mcp__serena__find_file, mcp__serena__create_text_file, mcp__serena__replace_symbol_body, mcp__serena__insert_after_symbol, mcp__serena__insert_before_symbol, mcp__serena__replace_content, mcp__serena__rename_symbol, mcp__serena__safe_delete_symbol.

Does Validation Scopes access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Validation Scopes safe to install?

Our automated static check of SKILL.md found notes only (pre-approves every shell command (allowed-tools: bash)), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Validation Scopes use?

No licence was found for Validation Scopes or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does Validation Scopes use?

About 927 tokens (SKILL.md is roughly 3.7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Validation Scopes?

Skills that share tags, products or a category with Validation Scopes: .NET API Compatibility Design (Aaronontheweb/dotnet-skills, 1.2k stars), .NET Aspire Explicit Configuration (Aaronontheweb/dotnet-skills, 1.2k stars), Csharp Nullable Reference Types (Aaronontheweb/dotnet-skills, 1.2k stars) and Generate Testability Wrappers (dotnet/skills, 5.6k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Validation Scopes?

atherio-danp (a GitHub user) maintains it in atherio-danp/cde-dotnetcc, which has 109 GitHub stars. The repository holds 13 skills in this directory. The repository was last updated on July 26, 2026.

Source: atherio-danp/cde-dotnetcc on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.