Agent skill

Recipe Playground Webhook

by krakenfx in krakenfx/kraken-cli

Example driver: turn incoming webhook signals into validated paper trades inside a recorded session.

MITAuto-check passedBackend & APIs

Install Recipe Playground Webhook

skills CLI
$ npx skills add krakenfx/kraken-cli --skill recipe-playground-webhook -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install krakenfx/kraken-cli recipe-playground-webhook --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/krakenfx/kraken-cli.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/recipe-playground-webhook .claude/skills/recipe-playground-webhook && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
recipe-playground-webhook
GitHub stars
751
Token cost
~1.9k tokens
SKILL.md length
598 words
Files
1
Skills in repo
59
Repo updated
First seen
Licence
MIT

At a glance

Example driver: turn incoming webhook signals into validated paper trades inside a recorded session.

  • Tasks that involve Webhooks
  • SKILL.md covers Important, Signal Contract, Params and Quick Start, plus 4 more sections
  • Calls jq, python3 and curl

What it does

Recipe Playground Webhook is an agent skill from krakenfx/kraken-cli. Example driver: turn incoming webhook signals into validated paper trades inside a recorded session.

Its SKILL.md is about 1.9k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Backend & APIs, covering Webhooks. The repository describes itself as: The first AI-native CLI for trading crypto, stocks, forex, and derivatives. The licence is MIT.

When your agent uses it

  • Tasks that involve Webhooks

Example prompts

  • “/recipe-playground-webhook”

Requirements

  • Python 3

What it can do on your machine

Read from SKILL.md and the folder at commit aa56e59. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • jq
    • python3
    • curl
    • ssh

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use curl and ssh, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Recipe Playground Webhook loads about 1.9k tokens when it runs. Until then it costs about 32 tokens; SKILL.md has 598 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~32
When it runs · the whole SKILL.md, loaded when a task matches
~1.9k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from krakenfx/kraken-cli at commit aa56e59, republished under its MIT licence (© krakenfx). 598 words, ~1,888 tokens.

Download SKILL.mdSave it as .claude/skills/recipe-playground-webhook/SKILL.md (or your agent's skills folder).
name
recipe-playground-webhook
description
Example driver: turn incoming webhook signals into validated paper trades inside a recorded session.
version
1.0.0

Playground: Webhook → Paper Trade

PREREQUISITE: Load kraken-playground to run this recipe. This recipe is an example, not a boundary. Adapt the steps to your signal source, or write your own driver (see kraken-playground → Driving Your Own Hypothesis).

Bridge an external system into the sandbox: a TradingView alert, a CI job, or a plain curl POSTs a signal to a local listener, and each valid signal becomes a paper order inside a recorded session. The market tape, the fills, and the signal-to-order decisions all land in one window for replay and P&L.

Use this skill for:

  • wiring an existing alerting system to paper execution without touching its config
  • testing a signal feed's quality (how its entries score) before any real money
  • recording an event-driven loop whose events come from outside the market

Important

This recipe records a session. It never places a live order.

The webhook payload is untrusted input. Every field is validated against an allowlist or a numeric bound before it reaches an order — a signal that fails any check is logged as a skip, never executed, and never interpolated into a command.

The listener binds 127.0.0.1 only. Do not bind other interfaces and do not port-forward it; anyone who can reach the port can trade the paper account. If the signal source is remote, tunnel (e.g. ssh -R) rather than expose.

The signal stream is the loop, not /loop — the same long-lived-process exception as the dip-triggered recipe (see kraken-playground → Pacing).

Signal Contract

One JSON object per POST body:

json
{"symbol": "BTC/USD", "side": "buy", "qty": "0.001", "token": "<shared-secret>", "note": "free text"}

symbol, side, qty are required; token is required when the token param is set; note is echoed into the decision reason.

Params

Every bound that gates execution goes in --strategy-params:

  • port: listener port on 127.0.0.1
  • allowed_symbols: the only pairs a signal may trade — must be a subset of the session's recorded --symbols, or fills have no marks to score by
  • max_notional_per_signal: quote-currency cap per order; a signal above it is skipped, not clamped
  • max_signals: stop after this many executed signals
  • token: optional shared secret; when set, signals without a matching token field are dropped

Quick Start

Natural language:

Listen on localhost:8787 for webhook signals. Trade only BTC/USD, at most
$500 per signal, at most 10 signals, then stop. Record every accepted and
rejected signal with its reason. At the end, show P&L.
Show full SKILL.md (250 more words)Show less

Start the Session

Work inside a paper workspace (create one once: kraken workspace create hook --capital 10000 --mode paper), then:

bash
export KRAKEN_WORKSPACE=hook

kraken session start \
  --symbols BTC/USD --channels ticker,trade --to duckdb,jsonl \
  --label hook-btc-$(date +%Y%m%d-%H%M%S) \
  --strategy recipe-playground-webhook \
  --strategy-params '{"port":8787,"allowed_symbols":["BTC/USD"],"max_notional_per_signal":500,"max_signals":10}' \
  -o json 2>/dev/null &

# The session_started stdout line carries the id: {"type":"session_started","session":"s<n>",...}

Print the session id to the user right after starting, and again in the final report.

Listen and Decide

The listener appends each POST body to a signals file outside the session directory (the recorder owns that tree); the decision loop tails it. Both die with the session.

bash
PORT=8787
ALLOWED_SYMBOLS="BTC/USD"          # space-separated allowlist
MAX_NOTIONAL=500
MAX_SIGNALS=10
SIGNALS=$(mktemp -t hook-signals)

python3 - "$PORT" "$SIGNALS" <<'PY' &
import http.server, sys
port, path = int(sys.argv[1]), sys.argv[2]
class H(http.server.BaseHTTPRequestHandler):
    def do_POST(self):
        body = self.rfile.read(int(self.headers.get("Content-Length", 0)))
        with open(path, "ab") as f:
            f.write(body.strip() + b"\n")
        self.send_response(204); self.end_headers()
    def log_message(self, *args): pass
http.server.HTTPServer(("127.0.0.1", port), H).serve_forever()
PY
LISTENER=$!

DONE=0
tail -n +1 -f "$SIGNALS" | while read -r sig; do
  SYMBOL=$(echo "$sig" | jq -r '.symbol // empty')
  SIDE=$(echo "$sig" | jq -r '.side // empty')
  QTY=$(echo "$sig" | jq -r '.qty // empty')
  NOTE=$(echo "$sig" | jq -r '.note // ""')

  # Untrusted input: allowlist the enum and the pair, bound the number.
  # A failed check is a recorded skip — never a clamped or guessed order.
  case "$SIDE" in buy|sell) ;; *)
    kraken session note --kind skip --reason "webhook rejected: bad side '$SIDE'" -o json 2>/dev/null; continue;;
  esac
  case " $ALLOWED_SYMBOLS " in *" $SYMBOL "*) ;; *)
    kraken session note --kind skip --reason "webhook rejected: symbol '$SYMBOL' not in allowlist" -o json 2>/dev/null; continue;;
  esac
  if ! echo "$QTY" | grep -qE '^[0-9]*\.?[0-9]+$'; then
    kraken session note --kind skip --reason "webhook rejected: non-numeric qty '$QTY'" -o json 2>/dev/null; continue
  fi
  PRICE=$(kraken ticker "$SYMBOL" -o json 2>/dev/null | jq -r '.. | .last? // empty' | head -1)
  NOTIONAL=$(echo "scale=2; $QTY * $PRICE" | bc -l)
  if (( $(echo "$NOTIONAL > $MAX_NOTIONAL" | bc -l) )); then
    kraken session note --kind skip --symbol "$SYMBOL" \
      --reason "webhook rejected: notional \$$NOTIONAL exceeds cap \$$MAX_NOTIONAL" -o json 2>/dev/null; continue
  fi

  kraken order "$SIDE" "$SYMBOL" "$QTY" --type market \
    --reason "webhook signal: $SIDE $QTY $SYMBOL (~\$$NOTIONAL) — $NOTE" -o json 2>/dev/null
  DONE=$((DONE + 1))
  [ "$DONE" -ge "$MAX_SIGNALS" ] && break
done

kill "$LISTENER" 2>/dev/null
kraken session stop -o json 2>/dev/null

Send a test signal:

bash
curl -s -X POST "127.0.0.1:8787" -d '{"symbol":"BTC/USD","side":"buy","qty":"0.001","note":"smoke test"}'

Stop and Review

bash
kraken session show -o json 2>/dev/null | jq '.summary'

kraken session decisions --session s<n> -o json 2>/dev/null \
  | jq -c '.decisions[] | {kind, symbol, reason}'

Report:

  • signals received vs executed vs rejected, with the rejection reasons
  • fill quality: reason-joined entries from kraken explain pnl
  • P&L, and whether the signal source earns a bigger cap

Hard Rules

  • This recipe records a session. It never places a live order.
  • The listener binds 127.0.0.1 only — never another interface, never port-forwarded.
  • Webhook payloads are untrusted: enum fields pass an allowlist, numbers pass a bound, and nothing from the payload is ever executed or eval'd — rejected signals become skip notes, not orders.
  • allowed_symbols stays a subset of the session's recorded --symbols.
  • The signals file lives outside the session directory; the CLI recorder stays the single writer of the session's artifacts.
  • Cap executed signals with max_signals; a runaway signal source must exhaust the cap, not the account.
  • Keep every gating number in --strategy-params and the arithmetic in jq/bc.
  • If you hit a mismatch between what you are trying to do and the CLI's interface or responses — including a mismatch between this skill and the installed CLI version's contract — feel free to submit feedback with kraken feedback.

© krakenfx, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/recipe-playground-webhook of krakenfx/kraken-cli.

Open the folder on GitHubat commit aa56e59

Compare with similar skills

Recipe Playground Webhook next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Recipe Playground Webhook compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Recipe Playground Webhook this skillkrakenfx/kraken-cli751—~1.9kAutomated safety check: PassMIT
Novu Design Workflownovuhq/novu40k—~2.6kAutomated safety check: PassCustom licence
Golivemikehasa/golive-skill1.3k—~13kAutomated safety check: NotesMIT
Stripe Appsfossasia/eventyay1.7k1 repos~3.6kAutomated safety check: PassApache-2.0
Dingtalk Messageagentscope-ai/ReMe3.6k—~1.6kAutomated safety check: PassApache-2.0
PR Review Provideryansongda/pay5.4k—~2.4kAutomated safety check: PassMIT

Similar skills

  • Design notification workflows the Novu way — choose channels, set severity, decide when a workflow is critical, configure digests, and route based on subscriber state.

    40k GitHub stars~2.6k tokensUpdated today
    Backend & APIsAuto-check passed
  • Golive

    mikehasa/golive-skill

    Take an agent-written app from repo to live production on the user's OWN accounts, with providers they choose (hosting, database, auth, payments, email, domain/DNS).

    1.3k GitHub stars~13k tokensUpdated 7 days ago
    Backend & APIsAuto-check: notes
  • Stripe Apps

    fossasia/eventyay

    A skill your agent uses when building, modifying, or reviewing a Stripe App — or when the user describes something that implies one (e.g.

    1.7k GitHub starsUsed in 1 repo~3.6k tokens
    Backend & APIsAuto-check passed
  • Dingtalk Message

    agentscope-ai/ReMe

    钉钉消息发送技能。支持企业内部机器人(批量单聊/群聊)和 Webhook 自定义机器人两种接入方式,支持多机器人管理,支持文本、Markdown、链接、ActionCard、FeedCard等多种消息类型。

    3.6k GitHub stars~1.6k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • PR Review Provider

    yansongda/pay

    A skill your agent uses when reviewing PRs that add or modify a payment Provider in yansongda/pay - covers plugin pipeline, multi-tenant safety, signature verification, docs, and naming conventions.

    5.4k GitHub stars~2.4k tokensUpdated 2 days ago
    Backend & APIsAuto-check passed
  • Stripe Best Practices

    kanchengw/cnllm

    Guides Stripe integration decisions — API selection (Checkout Sessions vs PaymentIntents), Connect platform setup (Accounts v2, controller properties), billing/subscriptions, Treasury financial…

    173 GitHub starsUsed in 2 repos~925 tokens
    Backend & APIsAuto-check passed

More from krakenfx/kraken-cli

All 59 skills in this repo
  • Kraken Alert Patterns

    krakenfx/kraken-cli

    Price alerts, threshold monitoring, and notification triggers for agents.

    751 GitHub stars~1.1k tokensUpdated 2 mo ago
    Auto-check passed
  • Kraken Autonomy Levels

    krakenfx/kraken-cli

    Progress from manual trading to full agent autonomy with controlled risk at each level.

    751 GitHub stars~1.3k tokensUpdated 2 mo ago
    Auto-check passed
  • Kraken Basis Trading

    krakenfx/kraken-cli

    Capture the spot-futures price spread with delta-neutral basis trades.

    751 GitHub stars~802 tokensUpdated 2 mo ago
    Auto-check passed
  • Kraken Dca Strategy

    krakenfx/kraken-cli

    Dollar cost averaging with scheduled buys and performance tracking.

    751 GitHub stars~1k tokensUpdated 2 mo ago
    Auto-check passed
  • Kraken Earn Staking

    krakenfx/kraken-cli

    Discover staking strategies, allocate funds, and track earn positions.

    751 GitHub stars~1k tokensUpdated 2 mo ago
    Auto-check passed
  • Kraken Error Recovery

    krakenfx/kraken-cli

    Handle order failures, network errors, and duplicate submissions safely.

    751 GitHub stars~1.1k tokensUpdated 2 mo ago
    Auto-check passed

Categories

Questions about Recipe Playground Webhook

What does Recipe Playground Webhook do?

Example driver: turn incoming webhook signals into validated paper trades inside a recorded session. Recipe Playground Webhook is an agent skill from krakenfx/kraken-cli. Example driver: turn incoming webhook signals into validated paper trades inside a recorded session.

When should I use Recipe Playground Webhook?

Recipe Playground Webhook fits situations like: tasks that involve Webhooks.

How do I install Recipe Playground Webhook in Claude Code?

Run `npx skills add krakenfx/kraken-cli --skill recipe-playground-webhook -a claude-code`. Or copy the skill folder (skills/recipe-playground-webhook in krakenfx/kraken-cli) into .claude/skills/recipe-playground-webhook in your project. Claude Code loads it when a task matches its description.

How do I install Recipe Playground Webhook in Codex?

Run `npx skills add krakenfx/kraken-cli --skill recipe-playground-webhook -a codex`. Or copy the skill folder (skills/recipe-playground-webhook in krakenfx/kraken-cli) into .agents/skills/recipe-playground-webhook in your project. Codex loads it when a task matches its description.

Can I use Recipe Playground Webhook in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add krakenfx/kraken-cli --skill recipe-playground-webhook -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/recipe-playground-webhook, .gemini/skills/recipe-playground-webhook, .github/skills/recipe-playground-webhook and .opencode/skills/recipe-playground-webhook in your project.

What does Recipe Playground Webhook need to run?

Going by SKILL.md and its folder, Recipe Playground Webhook needs the command-line tools its instructions call (jq, python3, curl and ssh). Our summary lists: Python 3.

Does Recipe Playground Webhook access the network?

SKILL.md contains no URLs. Its commands use curl and ssh, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Recipe Playground Webhook safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Recipe Playground Webhook use?

Recipe Playground Webhook is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Recipe Playground Webhook use?

About 1.9k tokens (SKILL.md is roughly 7.6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Recipe Playground Webhook?

Skills that share tags, products or a category with Recipe Playground Webhook: Novu Design Workflow (novuhq/novu, 40k stars), Golive (mikehasa/golive-skill, 1.3k stars), Stripe Apps (fossasia/eventyay, 1.7k stars) and Dingtalk Message (agentscope-ai/ReMe, 3.6k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Recipe Playground Webhook?

krakenfx (a GitHub organization) maintains it in krakenfx/kraken-cli, which has 751 GitHub stars. The repository holds 59 skills in this directory. The repository was last updated on August 7, 2026.

Source: krakenfx/kraken-cli on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.