Agent skill

Elysia API Routes

by biersoeckli in biersoeckli/QuickStack

Create and update QuickStack Elysia REST API routes using the project's established /api/v1 route conventions.

GPL-3.0Auto-check passedBackend & APIs

Install Elysia API Routes

skills CLI
$ npx skills add biersoeckli/QuickStack --skill elysia-api-routes -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install biersoeckli/QuickStack elysia-api-routes --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/biersoeckli/QuickStack.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/elysia-api-routes .claude/skills/elysia-api-routes && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
elysia-api-routes
GitHub stars
361
Token cost
~1.1k tokens
SKILL.md length
307 words
Files
1
Skills in repo
4
Repo updated
First seen
Licence
GPL-3.0

At a glance

Create and update QuickStack Elysia REST API routes using the project's established /api/v1 route conventions.

  • Editing files under src/server/api/v1
  • SKILL.md covers Quick Start, Required Route Shape, Handler Rules and Schema Rules, plus 2 more sections
  • Calls yarn
  • Defining Elysia query/params/body/response schemas

What it does

Elysia API Routes is an agent skill from biersoeckli/QuickStack. Create and update QuickStack Elysia REST API routes using the project's established /api/v1 route conventions. Use when adding or editing files under src/server/api/v1, defining Elysia query/params/body/response schemas, or handling REST API authorization and errors.

Its SKILL.md is about 1.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Backend & APIs, covering REST APIs and Authorization and RBAC. The repository describes itself as: Open-source, self-hostable alternative to Vercel, Netlify, Railway and Heroku. Self-host any app on your own servers in minutes. The licence is GPL-3.0.

When your agent uses it

  • Editing files under src/server/api/v1
  • Defining Elysia query/params/body/response schemas
  • Handling REST API authorization and errors

Example prompts

  • “/elysia-api-routes”

What it can do on your machine

Read from SKILL.md and the folder at commit 32bca57. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • yarn

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use yarn, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Elysia API Routes loads about 1.1k tokens when it runs. Until then it costs about 71 tokens; SKILL.md has 307 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~71
When it runs · the whole SKILL.md, loaded when a task matches
~1.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from biersoeckli/QuickStack at commit 32bca57, republished under its GPL-3.0 licence (© biersoeckli). 307 words, ~1,065 tokens.

Download SKILL.mdSave it as .claude/skills/elysia-api-routes/SKILL.md (or your agent's skills folder).
name
elysia-api-routes
description
Create and update QuickStack Elysia REST API routes using the project's established /api/v1 route conventions. Use when adding or editing files under src/server/api/v1, defining Elysia query/params/body/response schemas, or handling REST API authorization and errors.

Elysia API Routes

Quick Start

For QuickStack REST routes under src/server/api/v1, follow the current examples in app/route.ts and project/route.ts:

ts
export const resourceRoutes = new Elysia()
    .derive(ApiUtils.deriveFunc)
    .get('/resources/:id', async ({ params, identity }) => {
        if (!identity) throw new ApiUnauthorizedException()

        const resource = await resourceService.getByIdOrUndefined(params.id);
        if (!resource) throw new ApiNotFoundException();

        ensureReadResource(identity, resource.id);

        return resource;
    }, {
        params: z.object({
            id: z.string(),
        }),
        response: ApiUtils.mapResponseModel(ResourceModel),
        detail: { summary: 'Get resource by id', security: [{ bearerAuth: [] }] }
    });

Required Route Shape

  • Start each route module with new Elysia().derive(ApiUtils.deriveFunc) so handlers receive identity.
  • Import ApiUtils from src/server/utils/api-response.utils.
  • Import ApiUnauthorizedException, ApiNotFoundException, and ServiceException from src/shared/model/service.exception.model as needed.
  • Declare query, params, and body directly in route options with Zod schemas.
  • Declare response with ApiUtils.mapResponseModel(successSchema).
  • Keep OpenAPI metadata in detail, with a short summary and security: [{ bearerAuth: [] }] for protected routes.

Handler Rules

  • If identity is missing, throw new ApiUnauthorizedException().
  • If a requested resource does not exist, throw new ApiNotFoundException().
  • Use shared authorization helpers such as ensureReadApp, ensureWriteApp, ensureCreateAppInProject, ensureDeleteAppInProject, ensureReadProject, and ensureAdmin.
  • Let shared authorization helpers throw; do not duplicate permission checks inline except for simple admin/read filtering already established in list routes.
  • Throw ServiceException for expected domain validation errors, such as immutable projectId violations.
  • Return success payloads directly; do not wrap them in { data }, { status }, or error envelopes.
  • Do not return ApiUtils.problem(...), raw Response, or Elysia status(...) for expected route errors.

Schema Rules

  • Use inline Zod objects for simple route params and query inputs.
  • Use existing write schemas, such as AppExtendedWriteZodModel or a local projectWriteSchema, for bodies.
  • Do not parse query, params, or body inside the handler if the route option already declares the schema.
  • Do not use nested schema: { query, params, body } in these route modules.
  • For delete routes, return undefined and declare response: ApiUtils.mapResponseModel(z.undefined()).
  • For deployment request routes, return { deploymentId } and declare response: ApiUtils.mapResponseModel(z.object({ deploymentId: z.string() })).

Write Route Pattern

Use POST upsert semantics:

ts
.post('/projects', async ({ body, identity }) => {
    if (!identity) throw new ApiUnauthorizedException()

    ensureAdmin(identity);

    let existing: Project | null = null;
    if (body.id) {
        existing = await projectService.getByIdOrUndefined(body.id);
        if (!existing) throw new ApiNotFoundException();
    }

    return projectService.save({ id: existing?.id, name: body.name });
}, {
    body: projectWriteSchema,
    response: ApiUtils.mapResponseModel(ProjectModel),
    detail: { summary: 'Create or update project', security: [{ bearerAuth: [] }] }
})

Validation Checklist

  • Run yarn tsc --noEmit after route changes.
  • Check that every accepted input has a route-level Zod schema.
  • Check that every route has response: ApiUtils.mapResponseModel(...).
  • Check that expected failures are thrown as exceptions; route mounting maps them centrally with ApiUtils.mapError(...).
  • Check CONTEXT.md for REST API domain terms and write semantics before changing behavior.

© biersoeckli, GPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .agents/skills/elysia-api-routes of biersoeckli/QuickStack.

Open the folder on GitHubat commit 32bca57

Compare with similar skills

Elysia API Routes next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Elysia API Routes compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Elysia API Routes this skillbiersoeckli/QuickStack361—~1.1kAutomated safety check: PassGPL-3.0
API Auditbriiirussell/cybersecurity-skills413—~2.8kAutomated safety check: NotesMIT
Shadmin CLIahaodev/shadmin174—~1.1kAutomated safety check: NotesMIT
Project Mapgjovanovicst/golang-auth-api130—~2.6kAutomated safety check: PassMIT
Add API Resourcewso2/agent-manager108—~1.1kAutomated safety check: PassApache-2.0
Discover APIrand/cc-polymath181—~1.5kAutomated safety check: PassMIT

Similar skills

  • API Audit

    briiirussell/cybersecurity-skills

    Audit REST, GraphQL, and RPC APIs against the OWASP API Security Top 10 (2023).

    413 GitHub stars~2.8k tokensUpdated 4 mo ago
    Backend & APIsAuto-check: notes
  • Shadmin CLI

    ahaodev/shadmin

    A skill your agent uses when the user asks to query Shadmin admin platform resources (users, roles, menus, registered API resources) from a terminal — for example "list shadmin users", "show shadmin…

    174 GitHub stars~1.1k tokensUpdated 2 days ago
    Backend & APIsAuto-check: notes
  • Project Map

    gjovanovicst/golang-auth-api

    Complete module inventory of the Auth API project with file paths, dependencies, and architecture overview.

    130 GitHub stars~2.6k tokensUpdated 2 mo ago
    Backend & APIsAuto-check passed
  • Add API Resource

    wso2/agent-manager

    Add or change a REST API resource in agent-manager-service (the Go control plane).

    108 GitHub stars~1.1k tokensUpdated 2 days ago
    Backend & APIsAuto-check passed
  • Discover API

    rand/cc-polymath

    Automatically discover API design skills when working with REST APIs, GraphQL schemas, API authentication, OAuth, JWT, rate limiting, API versioning, error handling, or endpoint design.

    181 GitHub stars~1.5k tokensUpdated 7 mo ago
    Backend & APIsAuto-check passed
  • API Design Reviewer

    alirezarezvani/claude-skills

    Comprehensive REST API design review with automated linting, breaking-change detection, and design scorecards.

    28k GitHub stars~3.2k tokensUpdated 1 mo ago
    Backend & APIsAuto-check passed

More from biersoeckli/QuickStack

  • Backend Services

    biersoeckli/QuickStack

    Create and update QuickStack backend services, adapters, standalone services, and server actions using the project's established singleton, adapter, caching, and error-handling patterns.

    361 GitHub stars~552 tokensUpdated yesterday
    Auto-check passed
  • Backend Testing

    biersoeckli/QuickStack

    Create and review QuickStack backend unit and integration tests using the project's Vitest, Prisma, SQLite, and k3s conventions.

    361 GitHub stars~670 tokensUpdated yesterday
    Auto-check passed
  • Frontend UI Patterns

    biersoeckli/QuickStack

    Create and update QuickStack frontend pages, React components, forms, dialogs, tables, streaming UI, and Zustand-backed state using the project's established UI conventions.

    361 GitHub stars~704 tokensUpdated yesterday
    Auto-check passed

Categories

Questions about Elysia API Routes

What does Elysia API Routes do?

Create and update QuickStack Elysia REST API routes using the project's established /api/v1 route conventions. Elysia API Routes is an agent skill from biersoeckli/QuickStack. Create and update QuickStack Elysia REST API routes using the project's established /api/v1 route conventions.

When should I use Elysia API Routes?

Elysia API Routes fits situations like: editing files under src/server/api/v1; defining Elysia query/params/body/response schemas; handling REST API authorization and errors.

How do I install Elysia API Routes in Claude Code?

Run `npx skills add biersoeckli/QuickStack --skill elysia-api-routes -a claude-code`. Or copy the skill folder (.agents/skills/elysia-api-routes in biersoeckli/QuickStack) into .claude/skills/elysia-api-routes in your project. Claude Code loads it when a task matches its description.

How do I install Elysia API Routes in Codex?

Run `npx skills add biersoeckli/QuickStack --skill elysia-api-routes -a codex`. Or copy the skill folder (.agents/skills/elysia-api-routes in biersoeckli/QuickStack) into .agents/skills/elysia-api-routes in your project. Codex loads it when a task matches its description.

Can I use Elysia API Routes in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add biersoeckli/QuickStack --skill elysia-api-routes -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/elysia-api-routes, .gemini/skills/elysia-api-routes, .github/skills/elysia-api-routes and .opencode/skills/elysia-api-routes in your project.

What does Elysia API Routes need to run?

Going by SKILL.md and its folder, Elysia API Routes needs the command-line tools its instructions call (yarn).

Does Elysia API Routes access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Elysia API Routes safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Elysia API Routes use?

Elysia API Routes is published under the GPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Elysia API Routes use?

About 1.1k tokens (SKILL.md is roughly 4.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Elysia API Routes?

Skills that share tags, products or a category with Elysia API Routes: API Audit (briiirussell/cybersecurity-skills, 413 stars), Shadmin CLI (ahaodev/shadmin, 174 stars), Project Map (gjovanovicst/golang-auth-api, 130 stars) and Add API Resource (wso2/agent-manager, 108 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Elysia API Routes?

biersoeckli (a GitHub user) maintains it in biersoeckli/QuickStack, which has 361 GitHub stars. The repository holds 4 skills in this directory. The repository was last updated on October 9, 2026.

Source: biersoeckli/QuickStack on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.