PR Review Provider
yansongda/pay
A skill your agent uses when reviewing PRs that add or modify a payment Provider in yansongda/pay - covers plugin pipeline, multi-tenant safety, signature verification, docs, and naming conventions.
Implements URL-based multi-tenancy with account scoping, membership patterns, and data isolation following 37signals patterns.
$ npx skills add dilolabs/nosia --skill multi-tenant-setup -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install dilolabs/nosia multi-tenant-setup --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/dilolabs/nosia.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.vibe/skills/multi-tenant-setup .claude/skills/multi-tenant-setup && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "multi-tenant-setup" agent skill from https://github.com/dilolabs/nosia/tree/main/.vibe/skills/multi-tenant-setup into .claude/skills/multi-tenant-setup/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "multi-tenant-setup", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/dilolabs/nosia/tree/main/.vibe/skills/multi-tenant-setupType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add dilolabs/nosia --skill multi-tenant-setup -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install dilolabs/nosia multi-tenant-setup --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dilolabs/nosia.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.vibe/skills/multi-tenant-setup .agents/skills/multi-tenant-setup && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "multi-tenant-setup" agent skill from https://github.com/dilolabs/nosia/tree/main/.vibe/skills/multi-tenant-setup into .agents/skills/multi-tenant-setup/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "multi-tenant-setup", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add dilolabs/nosia --skill multi-tenant-setup -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install dilolabs/nosia multi-tenant-setup --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dilolabs/nosia.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.vibe/skills/multi-tenant-setup .cursor/skills/multi-tenant-setup && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "multi-tenant-setup" agent skill from https://github.com/dilolabs/nosia/tree/main/.vibe/skills/multi-tenant-setup into .cursor/skills/multi-tenant-setup/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "multi-tenant-setup", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/dilolabs/nosia.git --path .vibe/skills/multi-tenant-setup--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add dilolabs/nosia --skill multi-tenant-setup -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install dilolabs/nosia multi-tenant-setup --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dilolabs/nosia.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.vibe/skills/multi-tenant-setup .gemini/skills/multi-tenant-setup && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "multi-tenant-setup" agent skill from https://github.com/dilolabs/nosia/tree/main/.vibe/skills/multi-tenant-setup into .gemini/skills/multi-tenant-setup/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "multi-tenant-setup", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install dilolabs/nosia multi-tenant-setupInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add dilolabs/nosia --skill multi-tenant-setup -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/dilolabs/nosia.git skills-src && mkdir -p .github/skills && cp -r skills-src/.vibe/skills/multi-tenant-setup .github/skills/multi-tenant-setup && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "multi-tenant-setup" agent skill from https://github.com/dilolabs/nosia/tree/main/.vibe/skills/multi-tenant-setup into .github/skills/multi-tenant-setup/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "multi-tenant-setup", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add dilolabs/nosia --skill multi-tenant-setup -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install dilolabs/nosia multi-tenant-setup --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dilolabs/nosia.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.vibe/skills/multi-tenant-setup .opencode/skills/multi-tenant-setup && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "multi-tenant-setup" agent skill from https://github.com/dilolabs/nosia/tree/main/.vibe/skills/multi-tenant-setup into .opencode/skills/multi-tenant-setup/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "multi-tenant-setup", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
multi-tenant-setupImplements URL-based multi-tenancy with account scoping, membership patterns, and data isolation following 37signals patterns.
Multi Tenant Setup is an agent skill from dilolabs/nosia. Implements URL-based multi-tenancy with account scoping, membership patterns, and data isolation following 37signals patterns. Use when setting up multi-tenant architecture, account isolation, membership management, or when user mentions multi-tenancy, accounts, or tenant separation. WHEN NOT: For basic model setup without tenancy (use model-patterns), for auth/session setup (use auth-setup).
Its SKILL.md is about 2.6k tokens, which your agent loads only when the skill is triggered. The skill folder holds 3 other files, including reference files (for example `references/account-scoping.md` and `references/membership-patterns.md`). Compatibility notes: Ruby 3.3+, Rails 8.0+
It sits in Backend & APIs, covering Multi-tenancy. The repository describes itself as: Self-hosted AI RAG + MCP Platform. The licence is MIT.
Read from SKILL.md and the folder at commit 0ef5e5d. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
railsFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Ruby 3.3+, Rails 8.0+
From compatibility in the SKILL.md frontmatter.
Multi Tenant Setup loads about 2.6k tokens when it runs, and up to ~6.2k if it reads all its reference files. Until then it costs about 104 tokens; SKILL.md has 240 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from dilolabs/nosia at commit 0ef5e5d, republished under its MIT licence (© dilolabs). 240 words, ~2,635 tokens.
.claude/skills/multi-tenant-setup/SKILL.md (or your agent's skills folder). This skill also uses 2 other files; get the full folder from GitHub.app.myapp.com/123/boards/456 (account_id in path)account_id on every table (no foreign key constraints)Current.account set from URL params for all requestsCurrent.accountStack: URL-based multi-tenancy (/accounts/:account_id/...), Current
attributes for account/user context, UUIDs for all primary keys, single
database with single schema.
Auth: Custom passwordless with Current.user, users can belong to multiple
accounts, account membership controls access.
Commands:
rails generate model Account name:string
rails generate model Membership user:references account:references role:integer
rails generate migration AddAccountToCards account:referencesSee @references/membership-patterns.md for full details.
# app/models/account.rb
class Account < ApplicationRecord
has_many :memberships, dependent: :destroy
has_many :users, through: :memberships
has_many :boards, dependent: :destroy
has_many :cards, dependent: :destroy
validates :name, presence: true, length: { maximum: 100 }
def member?(user)
users.exists?(user.id)
end
def add_member(user, role: :member)
memberships.find_or_create_by!(user: user) do |membership|
membership.role = role
end
end
def owner
memberships.owner.first&.user
end
end
# app/models/membership.rb
class Membership < ApplicationRecord
belongs_to :user
belongs_to :account
enum :role, { member: 0, admin: 1, owner: 2 }
validates :user_id, uniqueness: { scope: :account_id }
validates :role, presence: true
scope :active, -> { where(active: true) }
end
# app/models/user.rb
class User < ApplicationRecord
has_many :memberships, dependent: :destroy
has_many :accounts, through: :memberships
def member_of?(account)
accounts.exists?(account.id)
end
def role_in(account)
memberships.find_by(account: account)&.role
end
def admin_of?(account)
memberships.find_by(account: account)&.admin? ||
memberships.find_by(account: account)&.owner?
end
end# app/models/current.rb
class Current < ActiveSupport::CurrentAttributes
attribute :user, :account, :membership
delegate :admin?, :owner?, to: :membership, allow_nil: true, prefix: true
def member?
membership.present?
end
def can_edit?(resource)
return false unless member?
return true if membership_admin? || membership_owner?
resource.respond_to?(:creator) && resource.creator == user
end
end
# app/controllers/application_controller.rb
class ApplicationController < ActionController::Base
before_action :authenticate_user!
before_action :set_current_account
before_action :set_current_membership
before_action :ensure_account_member
private
def set_current_account
if params[:account_id]
Current.account = current_user.accounts.find(params[:account_id])
end
rescue ActiveRecord::RecordNotFound
redirect_to accounts_path, alert: "Account not found or access denied"
end
def set_current_membership
if Current.account
Current.membership = current_user.memberships.find_by(
account: Current.account
)
end
end
def ensure_account_member
return unless Current.account
unless Current.member?
redirect_to accounts_path, alert: "You don't have access"
end
end
def require_admin!
unless Current.membership_admin?
redirect_to account_path(Current.account), alert: "Admin access required"
end
end
end# config/routes.rb
Rails.application.routes.draw do
# Auth (no account context)
resource :session, only: [:new, :create, :destroy]
# Account selection
resources :accounts, only: [:index, :new, :create]
# All routes within account context
scope "/:account_id" do
resource :account, only: [:show, :edit, :update, :destroy]
resources :memberships, only: [:index, :create, :destroy]
resources :boards do
resources :cards do
resources :comments, only: [:create, :destroy]
resource :closure, only: [:create, :destroy]
end
end
resources :activities, only: [:index]
root "dashboards#show", as: :account_root
end
root "accounts#index"
endPath helpers:
account_boards_path(@account) # => /123/boards
account_board_path(@account, @board) # => /123/boards/456
account_board_cards_path(@account, @board) # => /123/boards/456/cardsSee @references/account-scoping.md for full details.
# app/models/concerns/account_scoped.rb
module AccountScoped
extend ActiveSupport::Concern
included do
belongs_to :account
validates :account_id, presence: true
before_validation :set_account_from_current, on: :create
scope :for_account, ->(account) { where(account: account) }
end
private
def set_account_from_current
self.account ||= Current.account
end
end
# Usage
class Board < ApplicationRecord
include AccountScoped
belongs_to :creator, class_name: "User"
has_many :cards, dependent: :destroy
validates :name, presence: true
end
# Child models inherit account from parent
class Card < ApplicationRecord
include AccountScoped
belongs_to :board
validate :account_matches_board
private
def set_account_from_current
self.account ||= board&.account || Current.account
end
def account_matches_board
if board && account_id != board.account_id
errors.add(:account_id, "must match board's account")
end
end
endclass BoardsController < ApplicationController
def index
@boards = Current.account.boards.includes(:creator).recent
end
def show
@board = Current.account.boards.find(params[:id])
end
def create
@board = Current.account.boards.build(board_params)
@board.creator = Current.user
if @board.save
redirect_to account_board_path(Current.account, @board)
else
render :new, status: :unprocessable_entity
end
end
private
def board_params
params.require(:board).permit(:name, :description)
end
end
class CardsController < ApplicationController
before_action :set_board
def create
@card = @board.cards.build(card_params)
@card.creator = Current.user
@card.account = Current.account # Explicit setting
if @card.save
redirect_to account_board_card_path(Current.account, @board, @card)
else
render :new, status: :unprocessable_entity
end
end
private
def set_board
@board = Current.account.boards.find(params[:board_id])
end
endclass AccountsController < ApplicationController
skip_before_action :set_current_account, only: [:index, :new, :create]
skip_before_action :ensure_account_member, only: [:index, :new, :create]
def index
@accounts = current_user.accounts.order(:name)
if @accounts.size == 1
redirect_to account_root_path(@accounts.first)
end
end
def create
@account = Account.new(account_params)
if @account.save
@account.add_member(current_user, role: :owner)
redirect_to account_root_path(@account)
else
render :new, status: :unprocessable_entity
end
end
end# app/models/concerns/account_isolation.rb
module AccountIsolation
extend ActiveSupport::Concern
included do
validate :validate_account_consistency, on: :create
end
private
def validate_account_consistency
self.class.reflect_on_all_associations(:belongs_to).each do |assoc|
next if assoc.name == :account
related = send(assoc.name)
next unless related
if related.respond_to?(:account_id) && related.account_id != account_id
errors.add(assoc.name, "must belong to the same account")
end
end
end
end
# Controller security
module AccountSecurity
extend ActiveSupport::Concern
included do
rescue_from ActiveRecord::RecordNotFound, with: :record_not_found
end
private
def record_not_found
redirect_to account_root_path(Current.account),
alert: "Resource not found"
end
endclass AddAccountToCards < ActiveRecord::Migration[8.0]
def change
add_reference :cards, :account, type: :uuid, null: true
reversible do |dir|
dir.up do
execute <<-SQL
UPDATE cards
SET account_id = boards.account_id
FROM boards
WHERE cards.board_id = boards.id
SQL
change_column_null :cards, :account_id, false
end
end
add_index :cards, [:account_id, :created_at]
add_index :cards, [:account_id, :board_id]
end
end/:account_id/...)account_id on every tableCurrent.accountCurrent.account from URL in ApplicationControllerdefault_scope for account filteringCurrent.account from user's default account (use URL)account_id on any table© dilolabs, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 2 other files (references) in .vibe/skills/multi-tenant-setup of dilolabs/nosia.
Open the folder on GitHubat commit 0ef5e5d
We found 3 copies of this SKILL.md (exact, near-identical or edited) in other folders, from 1 other GitHub owner. This page covers the copy in dilolabs/nosia, which our catalogue first saw on October 7, 2026.
Multi Tenant Setup next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Multi Tenant Setup this skilldilolabs/nosia | 213 | 1 repos | ~2.6k | Automated safety check: Pass | MIT | |
| PR Review Provideryansongda/pay | 5.4k | — | ~2.4k | Automated safety check: Pass | MIT | |
| Abp Authorizationabpframework/abp | 14k | — | ~1.3k | Automated safety check: Pass | LGPL-3.0 | |
| Django Access Reviewgetsentry/skills | 1k | 3 repos | ~2.6k | Automated safety check: Notes | Apache-2.0 | |
| Backend Dev Guidelineslitefuse/litefuse | 100 | 1 repos | ~5.8k | Automated safety check: Pass | Custom licence | |
| Ecto Persistence Patternsgeorgeguimaraes/elixir-agent-tools | 184 | — | ~1.2k | Automated safety check: Pass | Apache-2.0 |
yansongda/pay
A skill your agent uses when reviewing PRs that add or modify a payment Provider in yansongda/pay - covers plugin pipeline, multi-tenant safety, signature verification, docs, and naming conventions.
abpframework/abp
ABP permission system - PermissionDefinitionProvider, [Authorize] attribute, CheckPolicyAsync, IsGrantedAsync, ICurrentUser, IPermissionManager, multi-tenancy side.
getsentry/skills
Django access control and IDOR security review. An agent skill from getsentry/skills.
litefuse/litefuse
Comprehensive backend development guide for Litefuse's Next.js 14/tRPC/Express/TypeScript monorepo.
georgeguimaraes/elixir-agent-tools
Designs and debugs Elixir persistence with Ecto: schemas, changesets, queries, preloads, migrations and multi-tenancy, kept within application contexts.
marckohlbrugge/37signals-skills
Apply Rails security and multi-tenant safety practices including scoped queries, SSRF defenses, rate limiting, and tenant-scoped realtime updates.
dilolabs/nosia
Builds REST APIs using respondto blocks with Jbuilder templates following the 37signals same-controllers-different-formats philosophy.
dilolabs/nosia
Implements custom passwordless authentication without Devise.
dilolabs/nosia
Implements HTTP caching with ETags, fragment caching, Russian doll caching, and Solid Cache configuration.
dilolabs/nosia
Creates and refactors model and controller concerns for shared behavior.
dilolabs/nosia
Builds event tracking, activity feeds, and webhook systems following 37signals patterns with a generic Event model and Eventable concern.
dilolabs/nosia
Implements shallow background jobs with later/now conventions using Solid Queue.
Categories
Implements URL-based multi-tenancy with account scoping, membership patterns, and data isolation following 37signals patterns. Multi Tenant Setup is an agent skill from dilolabs/nosia. Implements URL-based multi-tenancy with account scoping, membership patterns, and data isolation following 37signals patterns.
Multi Tenant Setup fits situations like: setting up multi-tenant architecture; account isolation; membership management; user mentions multi-tenancy.
Run `npx skills add dilolabs/nosia --skill multi-tenant-setup -a claude-code`. Or copy the skill folder (.vibe/skills/multi-tenant-setup in dilolabs/nosia) into .claude/skills/multi-tenant-setup in your project. Claude Code loads it when a task matches its description.
Run `npx skills add dilolabs/nosia --skill multi-tenant-setup -a codex`. Or copy the skill folder (.vibe/skills/multi-tenant-setup in dilolabs/nosia) into .agents/skills/multi-tenant-setup in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add dilolabs/nosia --skill multi-tenant-setup -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/multi-tenant-setup, .gemini/skills/multi-tenant-setup, .github/skills/multi-tenant-setup and .opencode/skills/multi-tenant-setup in your project.
Going by SKILL.md and its folder, Multi Tenant Setup needs the command-line tools its instructions call (rails). Compatibility (from SKILL.md): Ruby 3.3+, Rails 8.0+.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Multi Tenant Setup is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.6k tokens (SKILL.md is roughly 11k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 3.6k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Multi Tenant Setup: PR Review Provider (yansongda/pay, 5.4k stars), Abp Authorization (abpframework/abp, 14k stars), Django Access Review (getsentry/skills, 1k stars) and Backend Dev Guidelines (litefuse/litefuse, 100 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
dilolabs (a GitHub organization) maintains it in dilolabs/nosia, which has 213 GitHub stars. The repository holds 15 skills in this directory. The repository was last updated on September 9, 2026.
Source: dilolabs/nosia on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.