Agent skill

Bamboohr CI Integration

by jeremylongshore in jeremylongshore/tons-of-skills-marketplace

Build CI gates for a BambooHR connector using current OpenAPI contracts, synthetic HR fixtures, secret scanning, and an opt-in tenant smoke test.

MITAuto-check passedTesting & QA

Install Bamboohr CI Integration

skills CLI
$ npx skills add jeremylongshore/tons-of-skills-marketplace --skill bamboohr-ci-integration -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install jeremylongshore/tons-of-skills-marketplace bamboohr-ci-integration --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/jeremylongshore/tons-of-skills-marketplace.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/.curated/bamboohr-ci-integration .claude/skills/bamboohr-ci-integration && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
bamboohr-ci-integration
GitHub stars
2.8k
Token cost
~1k tokens
SKILL.md length
467 words
Files
2 (incl. references)
Skills in repo
3,342
Repo updated
First seen
Licence
MIT

At a glance

Build CI gates for a BambooHR connector using current OpenAPI contracts, synthetic HR fixtures, secret scanning, and an opt-in tenant smoke test.

  • Works in 7 steps: Inspect the repository's runtime, test… → Add synthetic unit tests for tenant… → Pin BambooHR's official OpenAPI commit… → …
  • Adding regression coverage
  • SKILL.md covers Overview, Prerequisites, Current Contract and Authentication, plus 7 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Bamboohr CI Integration is an agent skill from jeremylongshore/tons-of-skills-marketplace. Build CI gates for a BambooHR connector using current OpenAPI contracts, synthetic HR fixtures, secret scanning, and an opt-in tenant smoke test. Use when adding regression coverage or blocking unsafe releases. Trigger with "BambooHR CI", "BambooHR contract tests", or "test BambooHR integration".

Its SKILL.md is about 1k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files, including reference files (for example `references/official-docs.md`). Compatibility notes: Designed for Claude Code

It sits in Testing & QA, covering Integration testing, OpenAPI specifications and Secrets management. It works with OpenAPI. The repository describes itself as: Model-agnostic agent-skills platform with a harness-free canonical layer, verified adapters, and the ccpi package manager. Explore at tonsofskills.com. The licence is MIT.

When your agent uses it

  • Adding regression coverage
  • Blocking unsafe releases
  • With BambooHR CI
  • BambooHR contract tests

Example prompts

  • “BambooHR CI”
  • “BambooHR contract tests”
  • “test BambooHR integration”
  • “/bamboohr-ci-integration”

Requirements

  • Compatibility (from SKILL.md): Designed for Claude Code
  • Pre-approved tools (allowed-tools): Read, Glob, Grep, Write, Edit

Workflow steps

7 steps, taken from the first numbered list in SKILL.md.

  1. Inspect the repository's runtime, test framework, CI provider, generated-code
  2. Add synthetic unit tests for tenant validation, auth header creation,
  3. Pin BambooHR's official OpenAPI commit and add contract tests for only the
  4. Use invented names and values in fixtures. Include adversarial cases for
  5. Make formatting, static analysis, tests, contract diff, secret scan, and
  6. If a live smoke is justified, make it manually dispatched or protected-
  7. Fail the release on any required gate; do not convert schema/security failures

What it can do on your machine

Read from SKILL.md and the folder at commit cfae287. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Read
    • Glob
    • Grep
    • Write
    • Edit

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Designed for Claude Code

    From compatibility in the SKILL.md frontmatter.

Context cost

Bamboohr CI Integration loads about 1k tokens when it runs, and up to ~1.9k if it reads all its reference files. Until then it costs about 80 tokens; SKILL.md has 467 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~80
When it runs · the whole SKILL.md, loaded when a task matches
~1k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~1.9k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from jeremylongshore/tons-of-skills-marketplace at commit cfae287, republished under its MIT licence (© jeremylongshore). 467 words, ~1,032 tokens.

Download SKILL.mdSave it as .claude/skills/bamboohr-ci-integration/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
bamboohr-ci-integration
description
Build CI gates for a BambooHR connector using current OpenAPI contracts, synthetic HR fixtures, secret scanning, and an opt-in tenant smoke test. Use when adding regression coverage or blocking unsafe releases. Trigger with "BambooHR CI", "BambooHR contract tests", or "test BambooHR integration".
allowed-tools
Read, Glob, Grep, Write, Edit
compatibility
Designed for Claude Code
argument-hint
<repository-path> [unit|contract|smoke]
version
1.5.0
license
MIT
author
Jeremy Longshore <jeremy@intentsolutions.io>
tags
saas, hr, bamboohr, ci, testing
model
inherit
effort
high

BambooHR CI Contract

Overview

Create a fail-closed test lane that proves request construction, schema handling, redaction, retries, and tenant isolation without placing production BambooHR credentials or employee records in routine CI.

Prerequisites

  • The target repository or integration path and the requested operator outcome.
  • The tenant, identity, and data scope only when approved live work is in scope.
  • The current evidence register plus customer-specific permissions and agreements.

Current Contract

Use the pinned OpenAPI from BambooHR's official SDK repository as the endpoint and schema authority. Record the upstream commit and review diffs before updating the pin. Dataset v1 and legacy report deprecations must be regression assertions, not silently normalized away.

Authentication

Unit and contract tests use synthetic credentials that can never authenticate. An optional live smoke job uses a dedicated least-privilege identity in an approved test tenant, is disabled for forks, and never exposes secrets to pull- request code or artifacts.

Instructions

  1. Inspect the repository's runtime, test framework, CI provider, generated-code policy, and secret-scanning rules.
  2. Add synthetic unit tests for tenant validation, auth header creation, token-refresh persistence, redaction, error typing, retry boundaries, and idempotency decisions.
  3. Pin BambooHR's official OpenAPI commit and add contract tests for only the operations the application uses. Alert on removed operations, auth changes, changed required fields, response/status drift, or new deprecations.
  4. Use invented names and values in fixtures. Include adversarial cases for cross-tenant IDs, permission-denied fields, oversized pages, webhook replay, malformed signatures, and PII-like strings that must be redacted.
  5. Make formatting, static analysis, tests, contract diff, secret scan, and artifact scan required. Upload only reports proven free of payload data.
  6. If a live smoke is justified, make it manually dispatched or protected- environment gated, read-only, body-discarding, time-bounded, and non-forked.
  7. Fail the release on any required gate; do not convert schema/security failures to advisory because BambooHR is temporarily unavailable.
Show full SKILL.md (160 more words)Show less

Tool Discipline

Use Read, Glob, and Grep to inspect existing CI and tests. Use Write/Edit only for approved workflows, fixtures, and assertions. This skill does not run CI, create secrets, call a tenant, or change repository settings.

Approval Boundaries

Require approval before adding a dependency, enabling a live smoke, changing a required check, uploading artifacts, or granting CI access to a tenant secret.

Output

Return CI stages and triggers, OpenAPI pin, synthetic fixture policy, required checks, live-smoke boundary, secret exposure analysis, test results, and rollout or repository-setting steps still awaiting approval.

Error Handling

  • Official schema changes: stop the update and require a reviewed contract diff.
  • Live smoke unavailable: keep offline gates authoritative and report smoke skipped.
  • Secret/PII found in artifact: fail, quarantine, and remove the artifact.

Examples

  • "Run BambooHR tests on fork PRs" produces synthetic contract tests only.
  • "Put the production API key in Actions" is redirected to a protected test identity.

Resources

Read official evidence before pinning the contract.

© jeremylongshore, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file (references) in skills/.curated/bamboohr-ci-integration of jeremylongshore/tons-of-skills-marketplace.

  • SKILL.md
  • references/official-docs.md

Open the folder on GitHubat commit cfae287

Compare with similar skills

Bamboohr CI Integration next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Bamboohr CI Integration compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Bamboohr CI Integration this skilljeremylongshore/tons-of-skills-marketplace2.8k—~1kAutomated safety check: PassMIT
Contract Testingpetrkindlmann/qa-skills170—~4.1kAutomated safety check: PassMIT
Use Yaakmountain-loop/yaak19k—~1.9kAutomated safety check: PassMIT
Cloud Agents Starterscalar/scalar16k—~1.4kAutomated safety check: PassMIT
Jacred Tracker Parserjacred-fdb/jacred126—~1.4kAutomated safety check: PassAGPL-3.0
703 Technologies Fuzzing Testingjabrena/plinth447—~874Automated safety check: PassApache-2.0

Similar skills

  • Contract Testing

    petrkindlmann/qa-skills

    Implement consumer-driven contract testing with Pact-JS (v16).

    170 GitHub stars~4.1k tokensUpdated 4 mo ago
    Testing & QAAuto-check passed
  • Use Yaak

    mountain-loop/yaak

    A skill your agent uses when the user mentions Yaak, a Yaak workspace, or the yaak command, or asks to call, hit, or smoke test HTTP/REST endpoints, save or organize API requests for reuse or manual…

    19k GitHub stars~1.9k tokensUpdated today
    Backend & APIsAuto-check passed
  • Minimal starter runbook for cloud agents to install dependencies, run packages, execute tests, and troubleshoot the Scalar monorepo quickly.

    16k GitHub stars~1.4k tokensUpdated yesterday
    Testing & QAAuto-check passed
  • Jacred Tracker Parser

    jacred-fdb/jacred

    Adds and debugs JacRed torrent/anime tracker parsers (site probe, auth, magnet policy, SyncService, cron, fixtures, dry-run, OpenAPI wiring).

    126 GitHub stars~1.4k tokensUpdated 2 days ago
    Testing & QAAuto-check passed
  • A skill your agent uses when you need to add or review fuzz testing for Java APIs with CATS — including contract-driven negative testing, malformed payload validation, boundary input exploration, CI…

    447 GitHub stars~874 tokensUpdated 3 days ago
    Testing & QAAuto-check passed
  • API Testing

    petrkindlmann/qa-skills

    Test REST and GraphQL APIs with Playwright APIRequestContext, Supertest, or standalone HTTP clients.

    170 GitHub stars~2.7k tokensUpdated 4 mo ago
    Testing & QAAuto-check passed

More from jeremylongshore/tons-of-skills-marketplace

All 3,342 skills in this repo
  • Performing Security Code Review

    jeremylongshore/tons-of-skills-marketplace

    Execute this skill enables AI assistant to conduct a security-focused code review using the security-agent plugin.

    2.8k GitHub starsUsed in 2 repos~1.3k tokens
    Auto-check: notes
  • Adapting Transfer Learning Models

    jeremylongshore/tons-of-skills-marketplace

    Build this skill automates the adaptation of pre-trained machine learning models using transfer learning techniques.

    2.8k GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Agent Context Loader

    jeremylongshore/tons-of-skills-marketplace

    Execute proactive auto-loading: automatically detects and loads agents.md files.

    2.8k GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Aggregating Performance Metrics

    jeremylongshore/tons-of-skills-marketplace

    Aggregate and centralize performance metrics from applications, systems, databases, caches, and services.

    2.8k GitHub stars~1.2k tokensUpdated today
    Auto-check passed
  • Analyzing Capacity Planning

    jeremylongshore/tons-of-skills-marketplace

    Execute this skill enables AI assistant to analyze capacity requirements and plan for future growth.

    2.8k GitHub stars~947 tokensUpdated today
    Auto-check passed
  • Analyzing Database Indexes

    jeremylongshore/tons-of-skills-marketplace

    Process use when you need to work with database indexing. An agent skill from jeremylongshore/tons-of-skills-marketplace.

    2.8k GitHub stars~2k tokensUpdated today
    Auto-check passed

Works with

Questions about Bamboohr CI Integration

What does Bamboohr CI Integration do?

Build CI gates for a BambooHR connector using current OpenAPI contracts, synthetic HR fixtures, secret scanning, and an opt-in tenant smoke test. Bamboohr CI Integration is an agent skill from jeremylongshore/tons-of-skills-marketplace. Build CI gates for a BambooHR connector using current OpenAPI contracts, synthetic HR fixtures, secret scanning, and an opt-in tenant smoke test.

When should I use Bamboohr CI Integration?

Bamboohr CI Integration fits situations like: adding regression coverage; blocking unsafe releases; with BambooHR CI; bambooHR contract tests.

How do I install Bamboohr CI Integration in Claude Code?

Run `npx skills add jeremylongshore/tons-of-skills-marketplace --skill bamboohr-ci-integration -a claude-code`. Or copy the skill folder (skills/.curated/bamboohr-ci-integration in jeremylongshore/tons-of-skills-marketplace) into .claude/skills/bamboohr-ci-integration in your project. Claude Code loads it when a task matches its description.

How do I install Bamboohr CI Integration in Codex?

Run `npx skills add jeremylongshore/tons-of-skills-marketplace --skill bamboohr-ci-integration -a codex`. Or copy the skill folder (skills/.curated/bamboohr-ci-integration in jeremylongshore/tons-of-skills-marketplace) into .agents/skills/bamboohr-ci-integration in your project. Codex loads it when a task matches its description.

Can I use Bamboohr CI Integration in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add jeremylongshore/tons-of-skills-marketplace --skill bamboohr-ci-integration -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/bamboohr-ci-integration, .gemini/skills/bamboohr-ci-integration, .github/skills/bamboohr-ci-integration and .opencode/skills/bamboohr-ci-integration in your project.

What does Bamboohr CI Integration need to run?

SKILL.md names no scripts, command-line tools or credentials: Bamboohr CI Integration is instructions for the agent only. Its frontmatter pre-approves these tools: Read, Glob, Grep, Write, Edit. Compatibility (from SKILL.md): Designed for Claude Code.

Does Bamboohr CI Integration access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Bamboohr CI Integration safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Bamboohr CI Integration use?

Bamboohr CI Integration is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Bamboohr CI Integration use?

About 1k tokens (SKILL.md is roughly 4.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 831 tokens, read only when the agent opens those files.

What are the alternatives to Bamboohr CI Integration?

Skills that share tags, products or a category with Bamboohr CI Integration: Contract Testing (petrkindlmann/qa-skills, 170 stars), Use Yaak (mountain-loop/yaak, 19k stars), Cloud Agents Starter (scalar/scalar, 16k stars) and Jacred Tracker Parser (jacred-fdb/jacred, 126 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Bamboohr CI Integration?

jeremylongshore (a GitHub user) maintains it in jeremylongshore/tons-of-skills-marketplace, which has 2,827 GitHub stars. The repository holds 3,342 skills in this directory. The repository was last updated on October 10, 2026.

Source: jeremylongshore/tons-of-skills-marketplace on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.