Agent skill

Server Marchat

by Cod-e-Codes in Cod-e-Codes/marchat

Implements marchat server hub, WebSocket handlers, admin web, health, and startup validation.

MITAuto-check: notesBackend & APIs

Install Server Marchat

skills CLI
$ npx skills add Cod-e-Codes/marchat --skill server-marchat -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install Cod-e-Codes/marchat server-marchat --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/Cod-e-Codes/marchat.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.cursor/skills/server-marchat .claude/skills/server-marchat && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
server-marchat
GitHub stars
137
Token cost
~1k tokens
SKILL.md length
439 words
Files
1
Skills in repo
11
Repo updated
First seen
Licence
MIT

At a glance

Implements marchat server hub, WebSocket handlers, admin web, health, and startup validation.

  • Editing server/
  • SKILL.md covers Startup, Hub and WebSocket, Admin and Security, plus 4 more sections
  • Needs MARCHAT_SESSION_SECRET and MARCHAT_JWT_SECRET
  • Server configuration

What it does

Server Marchat is an agent skill from Cod-e-Codes/marchat. Implements marchat server hub, WebSocket handlers, admin web, health, and startup validation. Use when editing server/, cmd/server/, hub routing, admin panel, or server configuration.

Its SKILL.md is about 1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Backend & APIs, covering Realtime and WebSockets. The repository describes itself as: Terminal chat for developers: Go WebSocket server + Bubble Tea TUI client, optional E2E, reactions, DMs, channels, plugins, files, code snippets, admin UI. Backends: SQLite… The licence is MIT.

When your agent uses it

  • Editing server/
  • Server configuration

Example prompts

  • “Use the server-marchat skill to implement marchat server hub, WebSocket handlers, admin web, health, and startup validation”
  • “/server-marchat”

Requirements

  • A credential in MARCHAT_SESSION_SECRET
  • A credential in MARCHAT_JWT_SECRET

What it can do on your machine

Read from SKILL.md and the folder at commit 3440f09. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • MARCHAT_SESSION_SECRET
    • MARCHAT_JWT_SECRET

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Server Marchat loads about 1k tokens when it runs. Until then it costs about 50 tokens; SKILL.md has 439 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~50
When it runs · the whole SKILL.md, loaded when a task matches
~1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NoteMentions a .env fileSKILL.md:54
    - Root `config/` package: env + `config/.env` (`godotenv.Overload`).

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from Cod-e-Codes/marchat at commit 3440f09, republished under its MIT licence (© Cod-e-Codes). 439 words, ~1,006 tokens.

Download SKILL.mdSave it as .claude/skills/server-marchat/SKILL.md (or your agent's skills folder).
name
server-marchat
description
Implements marchat server hub, WebSocket handlers, admin web, health, and startup validation. Use when editing server/, cmd/server/, hub routing, admin panel, or server configuration.
paths
server/**, cmd/server/**, config/**

Server (marchat)

App entry: cmd/server/main.go. Library: server/ (hub, client, handlers, db, admin, health).

Startup

  • Validate before serve: at least one admin, non-empty admin key, valid listen port.
  • Admin names: trim, lowercase, case-insensitive dedupe.

Hub and WebSocket

  • Per-channel routing, DMs, typing, read receipts, reactions.
  • Moderation: permanent bans and unexpired temp kicks load from ban_history on hub start (latest open row per user); writers close open rows before insert and persist before updating in-memory maps. See Hub mutex rules comment on Hub in hub.go.
  • Inbound WebSocket messages: readPump rate-limits then dispatchInbound / typed handlers in client_dispatch.go.
  • Outbound client messages are channel-stamped from hub membership (stampClientChannel); client-supplied channel values are ignored for routing.
  • All outbound/persist paths stamp sender from the authenticated session (stampSenderTimedOutbound); NUL bytes in persistable content are rejected before insert; empty or whitespace-only plaintext on text / dm / edit is rejected when encrypted is false (encrypted opaque ciphertext is never treated as empty).
  • Chat content cap: MARCHAT_MAX_MESSAGE_BYTES / MARCHAT_MAX_MESSAGE_MB (default 32 KiB) checked in dispatchInbound for non-file types (System reply, connection stays open, no persist/broadcast). SetReadLimit stays the file DoS ceiling. Plugin chat and command replies over the cap are dropped in Hub.Run before broadcast (SetMaxMessageBytes before Run).
  • Reserved usernames during handshake (no double-book before registration).
  • Serialized writes per connection (client.go).
  • File uploads: SetReadLimit uses websocketReadLimit (max of policy fileMessageReadLimit wire size and a 32 MiB DoS ceiling) so modest oversize is fully read; declared/payload checks send a System reply and continue. ErrReadLimit (above the ceiling) logs rejection only - gorilla already sent empty close 1009, so a System enqueue cannot flush.
  • Read-pump rate limits: constants shared with loadverify_ratelimit_test.go.
  • Handshake replay: up to 50 visible recent messages (SQL limit after DM/public filter).
Show full SKILL.md (162 more words)Show less

Admin

  • TUI: admin_panel.go, config_ui.go (Charm v2: tea.View, KeyPressMsg, bubbles setters). Admin panel enables MouseModeCellMotion and routes MouseWheelMsg for scrollable tabs and user/plugin tables. Kick/ban cmds claim success only when hub KickUser/BanUser return nil (self-target, not-connected kick, and permanently-banned kick errors map to failed action messages). KickUser is online-only; offline kicks return ErrKickNotConnected.
  • Web: admin_web.go, admin_web.html; MARCHAT_SESSION_SECRET (preferred), MARCHAT_JWT_SECRET deprecated; CSRF on mutating routes; login rate limit per IP. User kick/ban actions return success: false with a message when the hub rejects the target.
  • Trusted proxies: MARCHAT_TRUSTED_PROXIES for forwarded client IP.

Security

  • Origin checks on parsed hostnames; optional MARCHAT_ALLOWED_ORIGINS.
  • Never log session secrets or admin keys.
  • E2E payloads opaque at rest and in logs.

Backup

  • :backup and admin backup actions: SQLite only (BackupDatabase checks dialect). Postgres/MySQL return a clear error; use native tools for those backends.

Config

  • Root config/ package: env + config/.env (godotenv.Overload).
  • MARCHAT_DB_PATH for database backend (database-marchat skill).

Testing

  • handlers_test.go, hub_test.go, integration_test.go, admin_web_test.go.
  • Subprocess doctor: cmd/server/subprocess_doctor_test.go.

Health

Metrics and health HTTP: server/health.go.

© Cod-e-Codes, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .cursor/skills/server-marchat of Cod-e-Codes/marchat.

Open the folder on GitHubat commit 3440f09

Compare with similar skills

Server Marchat next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Server Marchat compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Server Marchat this skillCod-e-Codes/marchat137—~1kAutomated safety check: NotesMIT
Supabase Development and Debuggingsupabase/agent-skills2.7k3 repos~3.6kAutomated safety check: PassMIT
Use Yaakmountain-loop/yaak19k—~1.9kAutomated safety check: PassMIT
Gemini Live API Devgoogle-gemini/gemini-skills4.3k—~4.6kAutomated safety check: PassApache-2.0
Web3 PolymarketPolymarket/agent-skills1912 repos~2kAutomated safety check: PassNone
GraphQL ArchitectJeffallan/claude-skills12k1 repos~1.3kAutomated safety check: PassMIT

Similar skills

  • Official

    General Supabase skill for database, auth, Edge Functions, Realtime and storage work, plus client libraries, migrations, security audits, debugging and reading logs.

    2.7k GitHub starsUsed in 3 repos~3.6k tokens
    Backend & APIsAuto-check passed
  • Use Yaak

    mountain-loop/yaak

    A skill your agent uses when the user mentions Yaak, a Yaak workspace, or the yaak command, or asks to call, hit, or smoke test HTTP/REST endpoints, save or organize API requests for reuse or manual…

    19k GitHub stars~1.9k tokensUpdated today
    Backend & APIsAuto-check passed
  • Gemini Live API Dev

    google-gemini/gemini-skills

    Official

    A skill your agent uses when building real-time, bidirectional streaming applications with the Gemini Live API, or migrating legacy Live models (2.0/2.5/3.1) to Gemini 3.8 Live.

    4.3k GitHub stars~4.6k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Web3 Polymarket

    Polymarket/agent-skills

    Polymarket integration for prediction market trading on Polygon.

    191 GitHub starsUsed in 2 repos~2k tokens
    Backend & APIsAuto-check passed
  • GraphQL Architect

    Jeffallan/claude-skills

    Designs GraphQL schemas and Apollo Federation graphs, with DataLoader resolvers, subscriptions, query complexity limits and caching.

    12k GitHub starsUsed in 1 repo~1.3k tokens
    Backend & APIsAuto-check passed
  • Broker Integration

    marketcalls/openalgo

    Integrate a new Indian broker into OpenAlgo, or modify an existing broker plugin.

    2.8k GitHub stars~4.7k tokensUpdated today
    Backend & APIsAuto-check: notes

More from Cod-e-Codes/marchat

All 11 skills in this repo
  • Debugging Marchat

    Cod-e-Codes/marchat

    Diagnoses marchat client and server issues using -doctor, env configuration, and logs.

    137 GitHub stars~668 tokensUpdated 4 days ago
    Auto-check: notes
  • Developing Marchat

    Cod-e-Codes/marchat

    Implements and refactors marchat Go code with project toolchain and quality gates.

    137 GitHub stars~870 tokensUpdated 4 days ago
    Auto-check passed
  • Git Workflow Marchat

    Cod-e-Codes/marchat

    Drafts conventional commit messages and pull request bodies for marchat without committing or pushing unless explicitly requested.

    137 GitHub stars~482 tokensUpdated 4 days ago
    Auto-check: notes
  • Testing Marchat

    Cod-e-Codes/marchat

    Writes and runs marchat tests with race detection, coverage, and dialect smoke patterns.

    137 GitHub stars~802 tokensUpdated 4 days ago
    Auto-check passed
  • Client Marchat

    Cod-e-Codes/marchat

    Implements marchat terminal client TUI, commands, keystore, and WebSocket client behavior.

    137 GitHub stars~1.5k tokensUpdated 4 days ago
    Auto-check passed
  • Database Marchat

    Cod-e-Codes/marchat

    Changes marchat SQL schema and queries across SQLite, PostgreSQL, and MySQL using dialect helpers.

    137 GitHub stars~985 tokensUpdated 4 days ago
    Auto-check passed

Categories

Questions about Server Marchat

What does Server Marchat do?

Implements marchat server hub, WebSocket handlers, admin web, health, and startup validation. Server Marchat is an agent skill from Cod-e-Codes/marchat. Implements marchat server hub, WebSocket handlers, admin web, health, and startup validation.

When should I use Server Marchat?

Server Marchat fits situations like: editing server/; server configuration.

How do I install Server Marchat in Claude Code?

Run `npx skills add Cod-e-Codes/marchat --skill server-marchat -a claude-code`. Or copy the skill folder (.cursor/skills/server-marchat in Cod-e-Codes/marchat) into .claude/skills/server-marchat in your project. Claude Code loads it when a task matches its description.

How do I install Server Marchat in Codex?

Run `npx skills add Cod-e-Codes/marchat --skill server-marchat -a codex`. Or copy the skill folder (.cursor/skills/server-marchat in Cod-e-Codes/marchat) into .agents/skills/server-marchat in your project. Codex loads it when a task matches its description.

Can I use Server Marchat in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Cod-e-Codes/marchat --skill server-marchat -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/server-marchat, .gemini/skills/server-marchat, .github/skills/server-marchat and .opencode/skills/server-marchat in your project.

What does Server Marchat need to run?

Going by SKILL.md and its folder, Server Marchat needs credentials named MARCHAT_SESSION_SECRET and MARCHAT_JWT_SECRET. Our summary lists: A credential in MARCHAT_SESSION_SECRET; A credential in MARCHAT_JWT_SECRET.

Does Server Marchat access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Server Marchat safe to install?

Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Server Marchat use?

Server Marchat is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Server Marchat use?

About 1k tokens (SKILL.md is roughly 4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Server Marchat?

Skills that share tags, products or a category with Server Marchat: Supabase Development and Debugging (supabase/agent-skills, 2.7k stars), Use Yaak (mountain-loop/yaak, 19k stars), Gemini Live API Dev (google-gemini/gemini-skills, 4.3k stars) and Web3 Polymarket (Polymarket/agent-skills, 191 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Server Marchat?

Cod-e-Codes (a GitHub user) maintains it in Cod-e-Codes/marchat, which has 137 GitHub stars. The repository holds 11 skills in this directory. The repository was last updated on October 3, 2026.

Source: Cod-e-Codes/marchat on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.