Project Workflow Analysis Blueprint Generator
github/awesome-copilot
Comprehensive technology-agnostic prompt generator for documenting end-to-end application workflows.
Plans and builds full-stack features with frontend, backend and security handled together, including a written design and a security checklist before any code.
$ npx skills add Jeffallan/claude-skills --skill fullstack-guardian -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install Jeffallan/claude-skills fullstack-guardian --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/Jeffallan/claude-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/fullstack-guardian .claude/skills/fullstack-guardian && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "fullstack-guardian" agent skill from https://github.com/Jeffallan/claude-skills/tree/main/skills/fullstack-guardian into .claude/skills/fullstack-guardian/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "fullstack-guardian", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/Jeffallan/claude-skills/tree/main/skills/fullstack-guardianType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add Jeffallan/claude-skills --skill fullstack-guardian -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install Jeffallan/claude-skills fullstack-guardian --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Jeffallan/claude-skills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/fullstack-guardian .agents/skills/fullstack-guardian && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "fullstack-guardian" agent skill from https://github.com/Jeffallan/claude-skills/tree/main/skills/fullstack-guardian into .agents/skills/fullstack-guardian/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "fullstack-guardian", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add Jeffallan/claude-skills --skill fullstack-guardian -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install Jeffallan/claude-skills fullstack-guardian --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Jeffallan/claude-skills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/fullstack-guardian .cursor/skills/fullstack-guardian && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "fullstack-guardian" agent skill from https://github.com/Jeffallan/claude-skills/tree/main/skills/fullstack-guardian into .cursor/skills/fullstack-guardian/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "fullstack-guardian", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/Jeffallan/claude-skills.git --path skills/fullstack-guardian--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add Jeffallan/claude-skills --skill fullstack-guardian -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install Jeffallan/claude-skills fullstack-guardian --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Jeffallan/claude-skills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/fullstack-guardian .gemini/skills/fullstack-guardian && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "fullstack-guardian" agent skill from https://github.com/Jeffallan/claude-skills/tree/main/skills/fullstack-guardian into .gemini/skills/fullstack-guardian/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "fullstack-guardian", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install Jeffallan/claude-skills fullstack-guardianInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add Jeffallan/claude-skills --skill fullstack-guardian -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/Jeffallan/claude-skills.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/fullstack-guardian .github/skills/fullstack-guardian && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "fullstack-guardian" agent skill from https://github.com/Jeffallan/claude-skills/tree/main/skills/fullstack-guardian into .github/skills/fullstack-guardian/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "fullstack-guardian", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add Jeffallan/claude-skills --skill fullstack-guardian -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install Jeffallan/claude-skills fullstack-guardian --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Jeffallan/claude-skills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/fullstack-guardian .opencode/skills/fullstack-guardian && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "fullstack-guardian" agent skill from https://github.com/Jeffallan/claude-skills/tree/main/skills/fullstack-guardian into .opencode/skills/fullstack-guardian/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "fullstack-guardian", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
fullstack-guardianPlans and builds full-stack features with frontend, backend and security handled together, including a written design and a security checklist before any code.
The skill sets a six-step flow: gather requirements and acceptance criteria, weigh the frontend, backend and security angles together, write a technical design file under specs/, pass a security checkpoint, build and test each component, then hand off to QA and deployment. The checkpoint means going through references/security-checklist.md before writing code to confirm authentication, authorization, validation and output encoding are covered.
Rules include validating input on both client and server, using parameterized queries against SQL injection, sanitizing output against XSS, logging security-relevant events and never trusting client-side validation alone or hardcoding secrets. Ten reference files cover design templates, error handling, CRUD and form patterns, backend and frontend patterns, integration, REST and GraphQL API standards, architecture decisions and a deliverables checklist.
6 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit 1be15d8. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md (its code samples are python and typescript).
From the folder's file list and the shell code blocks in SKILL.md.
Links to these hosts (documentation or services it may open):
github.comsynergetic.solutionsjeffallan.github.ioFrom URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Fullstack Guardian loads about 1.5k tokens when it runs, and up to ~17k if it reads all its reference files. Until then it costs about 236 tokens; SKILL.md has 349 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from Jeffallan/claude-skills at commit 1be15d8, republished under its MIT licence (© Jeffallan). 349 words, ~1,496 tokens.
.claude/skills/fullstack-guardian/SKILL.md (or your agent's skills folder). This skill also uses 10 other files; get the full folder from GitHub.Security-focused full-stack developer implementing features across the entire application stack.
specs/{feature}_design.mdreferences/security-checklist.md before writing any code; confirm auth, authz, validation, and output encoding are addressedLoad detailed guidance based on context:
| Topic | Reference | Load When |
|---|---|---|
| Design Template | references/design-template.md | Starting feature, three-perspective design |
| Security Checklist | references/security-checklist.md | Every feature - auth, authz, validation |
| Error Handling | references/error-handling.md | Implementing error flows |
| Common Patterns | references/common-patterns.md | CRUD, forms, API flows |
| Backend Patterns | references/backend-patterns.md | Microservices, queues, observability, Docker |
| Frontend Patterns | references/frontend-patterns.md | Real-time, optimization, accessibility, testing |
| Integration Patterns | references/integration-patterns.md | Type sharing, deployment, architecture decisions |
| API Design | references/api-design-standards.md | REST/GraphQL APIs, versioning, CORS, validation |
| Architecture Decisions | references/architecture-decisions.md | Tech selection, monolith vs microservices |
| Deliverables Checklist | references/deliverables-checklist.md | Completing features, preparing handoff |
A minimal authenticated endpoint illustrating all three layers:
[Backend] — Authenticated route with parameterized query and scoped response:
@router.get("/users/{user_id}/profile", dependencies=[Depends(require_auth)])
async def get_profile(user_id: int, current_user: User = Depends(get_current_user)):
if current_user.id != user_id:
raise HTTPException(status_code=403, detail="Forbidden")
# Parameterized query — no raw string interpolation
row = await db.fetchone("SELECT id, name, email FROM users WHERE id = ?", (user_id,))
if not row:
raise HTTPException(status_code=404, detail="Not found")
return ProfileResponse(**row) # explicit schema — no password/token leakage[Frontend] — Component calls the endpoint and handles errors gracefully:
async function fetchProfile(userId: number): Promise<Profile> {
const res = await apiFetch(`/users/${userId}/profile`); // apiFetch attaches auth header
if (!res.ok) throw new Error(await res.text());
return res.json();
}
// Client-side input guard (never the only guard)
if (!Number.isInteger(userId) || userId <= 0) throw new Error("Invalid user ID");[Security]
require_auth dependency; client header is a convenience, not the gate.ProfileResponse) explicitly excludes sensitive fields.When implementing features, provide:
Maintained by @jeffallan, Principal Consultant at Synergetic Solutions
© Jeffallan, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 10 other files (references) in skills/fullstack-guardian of Jeffallan/claude-skills.
Open the folder on GitHubat commit 1be15d8
Fullstack Guardian next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Fullstack Guardian this skillJeffallan/claude-skills | 12k | — | ~1.5k | Automated safety check: Pass | MIT | |
| Project Workflow Analysis Blueprint Generatorgithub/awesome-copilot | 40k | 1 repos | ~2.7k | Automated safety check: Pass | MIT | |
| Evolutionary Modular Architecturetech-leads-club/agent-skills | 7k | — | ~3.7k | Automated safety check: Pass | CC-BY-4.0 | |
| Designing ArchitectureCloudAI-X/claude-workflow-v2 | 1.4k | 1 repos | ~1.4k | Automated safety check: Pass | MIT | |
| Akka.NET Best PracticesAaronontheweb/dotnet-skills | 1.2k | 1 repos | ~3.3k | Automated safety check: Pass | MIT | |
| Senior Architectalirezarezvani/claude-skills | 28k | 4 repos | ~2.7k | Automated safety check: Pass | MIT |
github/awesome-copilot
Comprehensive technology-agnostic prompt generator for documenting end-to-end application workflows.
tech-leads-club/agent-skills
Guides design of modular-monolith platforms with DDD, flat-by-aggregate modules, anti-corruption layers, outbox events and resilience, plus an architecture document with SVG diagrams.
CloudAI-X/claude-workflow-v2
Designs software architecture and selects appropriate patterns for projects.
Aaronontheweb/dotnet-skills
Guidance for Akka.NET actor systems covering EventStream versus DistributedPubSub, supervision, Props versus DependencyResolver, work distribution and testable cluster code.
alirezarezvani/claude-skills
This skill should be used when the user asks to "design system architecture", "evaluate microservices vs monolith", "create architecture diagrams", "analyze dependencies", "choose a database", "plan…
arpitg1304/robotics-agent-skills
Architecture patterns, design principles, and proven recipes for building robust robotics software.
Jeffallan/claude-skills
Designs REST and GraphQL APIs from resource modeling to an OpenAPI 3.1 contract, with versioning, pagination and RFC 7807 error handling.
Jeffallan/claude-skills
Walks through designing, building and polishing a command-line tool: user workflow and command hierarchy, implementation in commander, click, typer or cobra, completions and cross-platform testing.
Jeffallan/claude-skills
Guides LLM fine-tuning with LoRA and QLoRA through Hugging Face PEFT, from dataset validation and training checks to adapter merging, quantization and deployment.
Jeffallan/claude-skills
Designs GraphQL schemas and Apollo Federation graphs, with DataLoader resolvers, subscriptions, query complexity limits and caching.
Jeffallan/claude-skills
Creates and checks Kubernetes manifests, Helm charts, RBAC and network policies, and helps debug pod problems, with kubectl checks and rollback steps.
Jeffallan/claude-skills
Builds Laravel 10+ applications with Eloquent models, Sanctum authentication, Horizon queues, API resources and Livewire components, tested with Pest or PHPUnit.
Categories
Plans and builds full-stack features with frontend, backend and security handled together, including a written design and a security checklist before any code. The skill sets a six-step flow: gather requirements and acceptance criteria, weigh the frontend, backend and security angles together, write a technical design file under specs/, pass a security checkpoint, build and test each component, then hand off to QA and deployment.md before writing code to confirm authentication, authorization, validation and output encoding are covered.
Fullstack Guardian fits situations like: building a feature that spans the database, API and UI in one pass; adding an authenticated REST endpoint together with its form or view; checking a feature design for gaps in auth, validation and output encoding; choosing between a monolith and microservices for a new project.
Run `npx skills add Jeffallan/claude-skills --skill fullstack-guardian -a claude-code`. Or copy the skill folder (skills/fullstack-guardian in Jeffallan/claude-skills) into .claude/skills/fullstack-guardian in your project. Claude Code loads it when a task matches its description.
Run `npx skills add Jeffallan/claude-skills --skill fullstack-guardian -a codex`. Or copy the skill folder (skills/fullstack-guardian in Jeffallan/claude-skills) into .agents/skills/fullstack-guardian in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Jeffallan/claude-skills --skill fullstack-guardian -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/fullstack-guardian, .gemini/skills/fullstack-guardian, .github/skills/fullstack-guardian and .opencode/skills/fullstack-guardian in your project.
SKILL.md names no scripts, command-line tools or credentials: Fullstack Guardian is instructions for the agent only.
SKILL.md names 3 domains. As links in the text: github.com, synergetic.solutions and jeffallan.github.io. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Fullstack Guardian is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.5k tokens (SKILL.md is roughly 6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 16k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Fullstack Guardian: Project Workflow Analysis Blueprint Generator (github/awesome-copilot, 40k stars), Evolutionary Modular Architecture (tech-leads-club/agent-skills, 7k stars), Designing Architecture (CloudAI-X/claude-workflow-v2, 1.4k stars) and Akka.NET Best Practices (Aaronontheweb/dotnet-skills, 1.2k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
Jeffallan (a GitHub user) maintains it in Jeffallan/claude-skills, which has 11,754 GitHub stars. The repository holds 58 skills in this directory. The repository was last updated on October 3, 2026.
Source: Jeffallan/claude-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.