Agent skill

Laraveldaily API Audit

by LaravelDaily in LaravelDaily/AI-Workflows-For-Laravel

This skill should be used when the user asks to "audit Laravel API", "review API architecture", "check API code", "find API issues", "API review", or wants to analyze a Laravel API project for…

No licenceAuto-check passedBackend & APIs

Install Laraveldaily API Audit

skills CLI
$ npx skills add LaravelDaily/AI-Workflows-For-Laravel --skill laraveldaily-api-audit -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install LaravelDaily/AI-Workflows-For-Laravel laraveldaily-api-audit --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/LaravelDaily/AI-Workflows-For-Laravel.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/laraveldaily-api-audit .claude/skills/laraveldaily-api-audit && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
laraveldaily-api-audit
GitHub stars
136
Token cost
~5.6k tokens
SKILL.md length
2,968 words
Files
1
Skills in repo
7
Repo updated
First seen
Licence
None found

At a glance

This skill should be used when the user asks to "audit Laravel API", "review API architecture", "check API code", "find API issues", "API review", or wants to analyze a Laravel API project for…

  • Works in 12 steps: Missing API Resources or Unclear… → Incorrect or Inconsistent HTTP Status… → Inconsistent JSON Response Structure → …
  • Asks to audit Laravel API
  • SKILL.md covers Before You Flag Anything, What to Check, Output Format and Important Guidelines
  • Calls php

What it does

Laraveldaily API Audit is an agent skill from LaravelDaily/AI-Workflows-For-Laravel. This skill should be used when the user asks to "audit Laravel API", "review API architecture", "check API code", "find API issues", "API review", or wants to analyze a Laravel API project for improvements. Scans the Laravel API codebase and reports high-signal findings with actionable suggestions.

Its SKILL.md is about 5.6k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Backend & APIs, covering Backend development. It works with Laravel and PHP.

When your agent uses it

  • Asks to audit Laravel API
  • Review API architecture
  • Find API issues
  • Wants to analyze a Laravel API project for improvements

Example prompts

  • “audit Laravel API”
  • “review API architecture”
  • “check API code”
  • “/laraveldaily-api-audit”

Workflow steps

12 steps, taken from the step headings in SKILL.md.

  1. Missing API Resources or Unclear Response Transformation
  2. Incorrect or Inconsistent HTTP Status Codes
  3. Inconsistent JSON Response Structure
  4. API Endpoints Returning HTML Error Pages
  5. N+1 Queries and Missing Eager Loading
  6. Missing or Weak Validation on Write Endpoints
  7. Unsafe Filtering, Sorting, and Query Parameters
  8. Route Model Binding Not Used Where It Would Simplify the API
  9. Missing Transactions on Multi-Step Writes
  10. Rate Limiting Gaps on Abuse-Prone Endpoints
  11. Authentication Guard and Token Handling Issues
  12. API Route Design and Conventions

What it can do on your machine

Read from SKILL.md and the folder at commit 4bff3b6. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • php

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Laraveldaily API Audit loads about 5.6k tokens when it runs. Until then it costs about 81 tokens; SKILL.md has 2,968 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~81
When it runs · the whole SKILL.md, loaded when a task matches
~5.6k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 2,968 words (~5,614 tokens).

“Analyze a Laravel API project's code against proven API development practices. Scan the relevant PHP source files (excluding vendor/, node_modules/, storage/) and produce a structured report of findings with actionable suggestions.”

— opening of SKILL.md by LaravelDaily
name
laraveldaily-api-audit

Read the full SKILL.md on GitHub

Files

Just SKILL.md in skills/laraveldaily-api-audit of LaravelDaily/AI-Workflows-For-Laravel.

Open the folder on GitHubat commit 4bff3b6

Compare with similar skills

Laraveldaily API Audit next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Laraveldaily API Audit compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Laraveldaily API Audit this skillLaravelDaily/AI-Workflows-For-Laravel136—~5.6kAutomated safety check: PassNone
Configuring Horizoncoollabsio/coolify63k4 repos~898Automated safety check: PassMIT
Fortify Developmentcoollabsio/coolify63k4 repos~1.9kAutomated safety check: PassMIT
Laravel Best Practicesanonaddy/anonaddy4.9k13 repos~1.2kAutomated safety check: PassMIT
Geoflowyaojingang/GEOFlow3.8k—~722Automated safety check: PassAGPL-3.0
Livewire Developmentcoollabsio/coolify63k—~964Automated safety check: PassMIT

Similar skills

  • Configuring Horizon

    coollabsio/coolify

    A skill your agent uses whenever the user mentions Horizon by name in a Laravel context.

    63k GitHub starsUsed in 4 repos~898 tokens
    Backend & APIsAuto-check passed
  • Fortify Development

    coollabsio/coolify

    ACTIVATE when the user works on authentication in Laravel. An agent skill from coollabsio/coolify.

    63k GitHub starsUsed in 4 repos~1.9k tokens
    Backend & APIsAuto-check passed
  • Laravel Best Practices

    anonaddy/anonaddy

    Apply this skill whenever writing, reviewing, or refactoring Laravel PHP code.

    4.9k GitHub starsUsed in 13 repos~1.2k tokens
    Backend & APIsAuto-check passed
  • Geoflow

    yaojingang/GEOFlow

    Operate/develop GEOFlow CLI/Laravel/admin/API, topics/专题 and topic tasks, theme libraries/replication, sites/leads/Agent, channel sync and legacy yao-geoflow-cli/design/template migration.

    3.8k GitHub stars~722 tokensUpdated today
    Backend & APIsAuto-check passed
  • Livewire Development

    coollabsio/coolify

    A skill your agent uses for any task or question involving Livewire.

    63k GitHub stars~964 tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Laravel Specialist

    Jeffallan/claude-skills

    Builds Laravel 10+ applications with Eloquent models, Sanctum authentication, Horizon queues, API resources and Livewire components, tested with Pest or PHPUnit.

    12k GitHub starsUsed in 1 repo~2.1k tokens
    Backend & APIsAuto-check passed

More from LaravelDaily/AI-Workflows-For-Laravel

  • Laraveldaily Testing Audit

    LaravelDaily/AI-Workflows-For-Laravel

    This skill should be used when the user asks to "audit Laravel tests", "review test coverage", "check testing practices", "find missing tests", "testing review", "improve tests", or wants to analyze…

    136 GitHub stars~4.6k tokensUpdated 5 mo ago
    Auto-check: notes
  • Laraveldaily Permissions Audit

    LaravelDaily/AI-Workflows-For-Laravel

    This skill should be used when the user asks to "audit Laravel permissions", "review roles and permissions", "check authorization code", "find permission issues", "permissions review", "audit access…

    136 GitHub stars~5.2k tokensUpdated 5 mo ago
    Auto-check passed
  • Laraveldaily Queues Audit

    LaravelDaily/AI-Workflows-For-Laravel

    This skill should be used when the user asks to "audit Laravel queues", "review queue implementation", "check job code", "find queue issues", "queue review", or wants to analyze a Laravel project's…

    136 GitHub stars~4.9k tokensUpdated 5 mo ago
    Auto-check passed
  • Laraveldaily Structure Audit

    LaravelDaily/AI-Workflows-For-Laravel

    This skill should be used when the user asks to "audit Laravel project structure", "review project architecture", "check code organization", "find over-engineering", "find fat controllers"…

    136 GitHub stars~4.6k tokensUpdated 5 mo ago
    Auto-check passed
  • Laraveldaily Eloquent Audit

    LaravelDaily/AI-Workflows-For-Laravel

    This skill should be used when the user asks to "audit Eloquent code", "review Eloquent usage", "check model code", "find N+1 queries", "find query performance issues", "Eloquent review", or wants…

    136 GitHub stars~6.5k tokensUpdated 5 mo ago
    Auto-check passed
  • Laraveldaily Production Readiness Audit

    LaravelDaily/AI-Workflows-For-Laravel

    Perform a comprehensive security audit of all project files in the current working directory.

    136 GitHub stars~1.9k tokensUpdated 5 mo ago
    Auto-check: notes

Works with

Categories

Questions about Laraveldaily API Audit

What does Laraveldaily API Audit do?

This skill should be used when the user asks to "audit Laravel API", "review API architecture", "check API code", "find API issues", "API review", or wants to analyze a Laravel API project for…. Laraveldaily API Audit is an agent skill from LaravelDaily/AI-Workflows-For-Laravel. This skill should be used when the user asks to "audit Laravel API", "review API architecture", "check API code", "find API issues", "API review", or wants to analyze a Laravel API project for improvements.

When should I use Laraveldaily API Audit?

Laraveldaily API Audit fits situations like: asks to audit Laravel API; review API architecture; find API issues; wants to analyze a Laravel API project for improvements.

How do I install Laraveldaily API Audit in Claude Code?

Run `npx skills add LaravelDaily/AI-Workflows-For-Laravel --skill laraveldaily-api-audit -a claude-code`. Or copy the skill folder (skills/laraveldaily-api-audit in LaravelDaily/AI-Workflows-For-Laravel) into .claude/skills/laraveldaily-api-audit in your project. Claude Code loads it when a task matches its description.

How do I install Laraveldaily API Audit in Codex?

Run `npx skills add LaravelDaily/AI-Workflows-For-Laravel --skill laraveldaily-api-audit -a codex`. Or copy the skill folder (skills/laraveldaily-api-audit in LaravelDaily/AI-Workflows-For-Laravel) into .agents/skills/laraveldaily-api-audit in your project. Codex loads it when a task matches its description.

Can I use Laraveldaily API Audit in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add LaravelDaily/AI-Workflows-For-Laravel --skill laraveldaily-api-audit -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/laraveldaily-api-audit, .gemini/skills/laraveldaily-api-audit, .github/skills/laraveldaily-api-audit and .opencode/skills/laraveldaily-api-audit in your project.

What does Laraveldaily API Audit need to run?

Going by SKILL.md and its folder, Laraveldaily API Audit needs the command-line tools its instructions call (php).

Does Laraveldaily API Audit access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Laraveldaily API Audit safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Laraveldaily API Audit use?

No licence was found for Laraveldaily API Audit or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does Laraveldaily API Audit use?

About 5.6k tokens (SKILL.md is roughly 22k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Laraveldaily API Audit?

Skills that share tags, products or a category with Laraveldaily API Audit: Configuring Horizon (coollabsio/coolify, 63k stars), Fortify Development (coollabsio/coolify, 63k stars), Laravel Best Practices (anonaddy/anonaddy, 4.9k stars) and Geoflow (yaojingang/GEOFlow, 3.8k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Laraveldaily API Audit?

LaravelDaily (a GitHub user) maintains it in LaravelDaily/AI-Workflows-For-Laravel, which has 136 GitHub stars. The repository holds 7 skills in this directory. The repository was last updated on April 15, 2026.

Source: LaravelDaily/AI-Workflows-For-Laravel on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.