Agent skill

Lindy Security Basics

by jeremylongshore in jeremylongshore/tons-of-skills-marketplace

Implement security best practices for Lindy agents and integrations.

MITAuto-check passedBackend & APIs

Install Lindy Security Basics

skills CLI
$ npx skills add jeremylongshore/tons-of-skills-marketplace --skill lindy-security-basics -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install jeremylongshore/tons-of-skills-marketplace lindy-security-basics --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/jeremylongshore/tons-of-skills-marketplace.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/.curated/lindy-security-basics .claude/skills/lindy-security-basics && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
lindy-security-basics
GitHub stars
2.8k
Token cost
~2.3k tokens
SKILL.md length
1,048 words
Files
3 (incl. references)
Skills in repo
3,342
Repo updated
First seen
Licence
MIT

At a glance

Implement security best practices for Lindy agents and integrations.

  • Works in 7 steps: Draw the Trust Map → Secure Webhook Received → Scope Connected Accounts and Actions → …
  • Securing webhook secrets
  • SKILL.md covers Overview, Prerequisites, Instructions and Security Checklist, plus 5 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Lindy Security Basics is an agent skill from jeremylongshore/tons-of-skills-marketplace. Implement security best practices for Lindy agents and integrations. Use when securing webhook secrets, scoping connected accounts, controlling side effects, or auditing agent access. Trigger with phrases like "lindy security", "secure lindy", "lindy webhook security", "lindy permissions", "lindy audit".

Its SKILL.md is about 2.3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 3 other files, including reference files (for example `references/implementation-guide.md` and `references/implementation.md`). Compatibility notes: Designed for Claude Code

It sits in Backend & APIs, covering Webhooks and Security review. The repository describes itself as: Model-agnostic agent-skills platform with a harness-free canonical layer, verified adapters, and the ccpi package manager. Explore at tonsofskills.com. The licence is MIT.

When your agent uses it

  • Securing webhook secrets
  • Scoping connected accounts
  • Controlling side effects
  • Auditing agent access

Example prompts

  • “lindy security”
  • “secure lindy”
  • “lindy webhook security”
  • “/lindy-security-basics”

Requirements

  • Compatibility (from SKILL.md): Designed for Claude Code
  • Pre-approved tools (allowed-tools): Read, Write, Edit

Workflow steps

7 steps, taken from the step headings in SKILL.md.

  1. Draw the Trust Map
  2. Secure Webhook Received
  3. Scope Connected Accounts and Actions
  4. Put Humans Before Consequential Side Effects
  5. Minimize Data Across Every Step
  6. Test Fail-Closed Behavior
  7. Review Tasks and Current Account Controls

What it can do on your machine

Read from SKILL.md and the folder at commit cfae287. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Read
    • Write
    • Edit

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • docs.lindy.ai
    • lindy.ai

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Designed for Claude Code

    From compatibility in the SKILL.md frontmatter.

Context cost

Lindy Security Basics loads about 2.3k tokens when it runs, and up to ~4.1k if it reads all its reference files. Until then it costs about 82 tokens; SKILL.md has 1,048 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~82
When it runs · the whole SKILL.md, loaded when a task matches
~2.3k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~4.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from jeremylongshore/tons-of-skills-marketplace at commit cfae287, republished under its MIT licence (© jeremylongshore). 1,048 words, ~2,266 tokens.

Download SKILL.mdSave it as .claude/skills/lindy-security-basics/SKILL.md (or your agent's skills folder). This skill also uses 2 other files; get the full folder from GitHub.
name
lindy-security-basics
description
Implement security best practices for Lindy agents and integrations. Use when securing webhook secrets, scoping connected accounts, controlling side effects, or auditing agent access. Trigger with phrases like "lindy security", "secure lindy", "lindy webhook security", "lindy permissions", "lindy audit".
allowed-tools
Read, Write, Edit
compatibility
Designed for Claude Code
version
1.20.0
license
MIT
author
Jeremy Longshore <jeremy@intentsolutions.io>
tags
saas, lindy, api, security

Lindy Security Basics

Overview

Secure Lindy workflows at the boundaries Lindy currently documents: generated Webhook Received secrets, per-action connected-account selection, target-service authentication in HTTP Request, Ask for Confirmation/draft modes, dedicated Computer Use sessions, Tasks, and Test Panel. Do not rely on an undocumented Lindy API key, webhook signature, role, connection-sharing level, fixed quota, or plan entitlement.

Prerequisites

  • Lindy workspace with an editable custom agent
  • Inventory of triggers, actions, connected accounts, external endpoints, data classes, owners, and consequential side effects
  • Sanitized fixtures and test/sandbox integrations

Instructions

Step 1: Draw the Trust Map

For every path, record source, destination, data fields, credential owner, selected connected account, allowed side effects, approver, failure path, and evidence source. Separate these directions:

DirectionSupported boundary
Application to LindyWebhook Received URL + Lindy-generated bearer secret
Lindy to external serviceHTTP Request + that service's authentication
External account actionExactly the connected account selected on the action
Lindy callback to applicationReceiver-owned trust boundary; no documented Lindy signature claim
Step 2: Secure Webhook Received
  1. Create the webhook inside the Webhook Received trigger.
  2. Generate the secret, copy it once, and store it in the caller's secret manager.
  3. Send it only in the Authorization bearer header to the generated HTTPS URL.
  4. Keep the webhook URL/secret out of prompts, bodies, query strings, task titles, screenshots, logs, and tickets.
  5. Minimize and validate the caller's payload before transmission.
  6. Rotate after suspected exposure by creating/reconfiguring the protected boundary, verifying the replacement, and retiring the old value according to the current UI.

The bearer secret authenticates the caller to Lindy. It does not authenticate a callback from Lindy to your application, and Lindy's Webhooks guide does not document an HMAC signature or timestamp header for that callback.

Step 3: Scope Connected Accounts and Actions

Lindy documents that each action selects one connected account. For every action:

  • select the account with the minimum data and authority required;
  • prefer a dedicated work/test account when the integration supports one;
  • remove actions and connections no longer required by the workflow;
  • avoid combining broad read and consequential write abilities in an autonomous Agent Step when deterministic actions/conditions are sufficient; and
  • use a dedicated Computer for an agent that needs Computer Use so saved sessions and site credentials are not shared across unrelated work.

Do not invent local permission dictionaries or quotas and describe them as Lindy controls. Enforce application-owned authorization again at any external receiver.

Step 4: Put Humans Before Consequential Side Effects

Enable Ask for Confirmation on supported actions that send messages, update records, create events, or cause other consequential effects. Use draft mode where available. Add condition-based escalation for unknown/out-of-scope cases. Keep confirmation enabled until representative testing and review justify a deliberate change; money, contracts, access changes, deletion, and sensitive external communications should retain explicit approval.

Step 5: Minimize Data Across Every Step
  • Use stable references instead of full messages/documents where possible.
  • Do not pass all webhook headers or the entire body to later actions.
  • Send HTTP Request only fields required by the target schema.
  • Bound lengths, collection sizes, nesting, and allowed enum values.
  • Never print secrets or sensitive inputs in Run Code; stdout becomes text.
  • Keep task links restricted because Tasks can expose step inputs and outputs.
  • Redact incident/evaluation exports; retain details only in approved systems.

Prompt instructions are defense in depth, not authorization. Conditions, selected accounts, receiver-side checks, confirmation, and schema validation must enforce the boundary even if model output is incorrect or adversarial.

Step 6: Test Fail-Closed Behavior

Use synthetic data and test accounts. Lindy's Test Panel executes real actions. Verify valid flow plus wrong/missing webhook secret, oversized/unknown payload, unexpected outbound host, target 401/403/429/5xx, malformed response, attempted prompt injection, missing approval, and untrusted callback content. Each negative case must stop, quarantine, or request human review without completing its side effect.

Show full SKILL.md (418 more words)Show less
Step 7: Review Tasks and Current Account Controls

Use Tasks to inspect the exact step order, selected paths, inputs/outputs, errors, and timestamps after testing and deployment. Review connected accounts and agent actions on a defined owner-approved cadence. For organization identity, audit, compliance, or contractual controls, verify current availability and configuration in Lindy's official security/pricing material and your workspace; do not freeze plan claims in this skill.

Security Checklist

  • Trust map covers every inbound, outbound, connected-account, and callback path
  • Webhook Received uses the generated bearer secret and exact generated URL
  • Secrets are distinct, nonempty, protected, and absent from content/logs
  • Every action uses the minimum-authority connected account
  • Consequential side effects require confirmation/draft/review
  • Payloads and Run Code inputs/outputs have explicit schemas and bounds
  • Callback content is untrusted until receiver-owned checks succeed
  • Test Panel uses synthetic data and test integrations
  • Negative tests prove fail-closed behavior
  • Tasks and connection/action inventory have owners and a review cadence

Error Handling

IssueCauseSolution
Wrong caller reaches webhookMissing/wrong generated bearerReject; rotate if exposure is suspected
Agent uses wrong accountWrong account selected on actionStop workflow and correct the explicit selection
Callback has no trusted auth boundaryAssumed Lindy signatureQuarantine; implement receiver-owned auth without claiming platform signing
Sensitive data appears in Tasks/logsPayload/output too broadDisable path, redact downstream copies, minimize schema, retest
Side effect runs during testProduction connection/no confirmationContain impact, restore state, use test account and confirmation
External receiver accepts excess authorityLindy prompt treated as authorizationEnforce identity, schema, and authorization at receiver

Output

Return a security review containing:

  • trust map and data classification for each boundary;
  • credential inventory with owner, storage, rotation trigger, and separation proof;
  • action-to-connected-account and side-effect inventory;
  • confirmation/draft/escalation decisions;
  • exact schema/data-minimization controls;
  • happy-path and negative fail-closed test receipts; and
  • open risks with owner and remediation, without copying secrets or sensitive payloads.

Examples

For an inbound document event, the caller sends only a synthetic document reference to the generated Webhook Received URL using its generated bearer secret. The workflow uses a specifically selected read-only source account, transforms only the reference, and stages any external update behind Ask for Confirmation. A separate application receiver validates its own credential and minimal callback schema; it does not assume an undocumented Lindy signature or act on callback text alone.

Resources

Next Steps

Carry the completed trust map, negative-test receipts, and open risks into lindy-prod-checklist; production readiness is not proven by this checklist alone.

© jeremylongshore, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 2 other files (references) in skills/.curated/lindy-security-basics of jeremylongshore/tons-of-skills-marketplace.

  • SKILL.md
  • references/implementation-guide.md
  • references/implementation.md

Open the folder on GitHubat commit cfae287

Compare with similar skills

Lindy Security Basics next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Lindy Security Basics compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Lindy Security Basics this skilljeremylongshore/tons-of-skills-marketplace2.8k—~2.3kAutomated safety check: PassMIT
Sec Checkwaynesutton/markdown-site627—~753Automated safety check: PassMIT
Security Reviewtrycompai/comp2k—~853Automated safety check: PassAGPL-3.0
Security Reviewgetsentry/warden418—~1.8kAutomated safety check: PassCustom licence
Security ConvexIgorWarzocha/Opencode-Workflows122—~3.1kAutomated safety check: PassNone
Security ReviewChatbotXIO/ChatbotX885—~1.8kAutomated safety check: NotesCustom licence

Similar skills

  • Sec Check

    waynesutton/markdown-site

    Security review checklist for Convex functions, auth logic, public queries, admin routes, webhooks, uploads, and AI-generated code.

    627 GitHub stars~753 tokensUpdated 4 mo ago
    Backend & APIsAuto-check passed
  • Security Review

    trycompai/comp

    Check code for the most common, high-risk security vulnerabilities (broken access control, tenant isolation, injection, secrets, SSRF, auth/session, unsafe file handling, mass assignment) before it…

    2k GitHub stars~853 tokensUpdated yesterday
    SecurityAuto-check passed
  • Security Review

    getsentry/warden

    Official

    Finds exploitable application security vulnerabilities in code changes.

    418 GitHub stars~1.8k tokensUpdated today
    SecurityAuto-check passed
  • Security Convex

    IgorWarzocha/Opencode-Workflows

    Review Convex security audit patterns for authentication and authorization.

    122 GitHub stars~3.1k tokensUpdated 8 mo ago
    SecurityAuto-check passed
  • Security Review

    ChatbotXIO/ChatbotX

    Use before committing changes to auth, workspace scoping, channel webhooks, AI tools/MCP, permission settings, or anything handling untrusted channel content in ChatbotX.

    885 GitHub stars~1.8k tokensUpdated 2 days ago
    SecurityAuto-check: notes
  • Official

    General Supabase skill for database, auth, Edge Functions, Realtime and storage work, plus client libraries, migrations, security audits, debugging and reading logs.

    2.7k GitHub starsUsed in 3 repos~3.6k tokens
    Backend & APIsAuto-check passed

More from jeremylongshore/tons-of-skills-marketplace

All 3,342 skills in this repo
  • Performing Security Code Review

    jeremylongshore/tons-of-skills-marketplace

    Execute this skill enables AI assistant to conduct a security-focused code review using the security-agent plugin.

    2.8k GitHub starsUsed in 2 repos~1.3k tokens
    Auto-check: notes
  • Adapting Transfer Learning Models

    jeremylongshore/tons-of-skills-marketplace

    Build this skill automates the adaptation of pre-trained machine learning models using transfer learning techniques.

    2.8k GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Agent Context Loader

    jeremylongshore/tons-of-skills-marketplace

    Execute proactive auto-loading: automatically detects and loads agents.md files.

    2.8k GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Aggregating Performance Metrics

    jeremylongshore/tons-of-skills-marketplace

    Aggregate and centralize performance metrics from applications, systems, databases, caches, and services.

    2.8k GitHub stars~1.2k tokensUpdated today
    Auto-check passed
  • Analyzing Capacity Planning

    jeremylongshore/tons-of-skills-marketplace

    Execute this skill enables AI assistant to analyze capacity requirements and plan for future growth.

    2.8k GitHub stars~947 tokensUpdated today
    Auto-check passed
  • Analyzing Database Indexes

    jeremylongshore/tons-of-skills-marketplace

    Process use when you need to work with database indexing. An agent skill from jeremylongshore/tons-of-skills-marketplace.

    2.8k GitHub stars~2k tokensUpdated today
    Auto-check passed

Categories

Questions about Lindy Security Basics

What does Lindy Security Basics do?

Implement security best practices for Lindy agents and integrations. Lindy Security Basics is an agent skill from jeremylongshore/tons-of-skills-marketplace. Implement security best practices for Lindy agents and integrations.

When should I use Lindy Security Basics?

Lindy Security Basics fits situations like: securing webhook secrets; scoping connected accounts; controlling side effects; auditing agent access.

How do I install Lindy Security Basics in Claude Code?

Run `npx skills add jeremylongshore/tons-of-skills-marketplace --skill lindy-security-basics -a claude-code`. Or copy the skill folder (skills/.curated/lindy-security-basics in jeremylongshore/tons-of-skills-marketplace) into .claude/skills/lindy-security-basics in your project. Claude Code loads it when a task matches its description.

How do I install Lindy Security Basics in Codex?

Run `npx skills add jeremylongshore/tons-of-skills-marketplace --skill lindy-security-basics -a codex`. Or copy the skill folder (skills/.curated/lindy-security-basics in jeremylongshore/tons-of-skills-marketplace) into .agents/skills/lindy-security-basics in your project. Codex loads it when a task matches its description.

Can I use Lindy Security Basics in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add jeremylongshore/tons-of-skills-marketplace --skill lindy-security-basics -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/lindy-security-basics, .gemini/skills/lindy-security-basics, .github/skills/lindy-security-basics and .opencode/skills/lindy-security-basics in your project.

What does Lindy Security Basics need to run?

SKILL.md names no scripts, command-line tools or credentials: Lindy Security Basics is instructions for the agent only. Its frontmatter pre-approves these tools: Read, Write, Edit. Compatibility (from SKILL.md): Designed for Claude Code.

Does Lindy Security Basics access the network?

SKILL.md names 2 domains. As links in the text: docs.lindy.ai and lindy.ai. This is read from the text; nothing was executed.

Is Lindy Security Basics safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Lindy Security Basics use?

Lindy Security Basics is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Lindy Security Basics use?

About 2.3k tokens (SKILL.md is roughly 9.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 1.8k tokens, read only when the agent opens those files.

What are the alternatives to Lindy Security Basics?

Skills that share tags, products or a category with Lindy Security Basics: Sec Check (waynesutton/markdown-site, 627 stars), Security Review (trycompai/comp, 2k stars), Security Review (getsentry/warden, 418 stars) and Security Convex (IgorWarzocha/Opencode-Workflows, 122 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Lindy Security Basics?

jeremylongshore (a GitHub user) maintains it in jeremylongshore/tons-of-skills-marketplace, which has 2,827 GitHub stars. The repository holds 3,342 skills in this directory. The repository was last updated on October 10, 2026.

Source: jeremylongshore/tons-of-skills-marketplace on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.