Agent skill

API Debugging

by ownpilot in ownpilot/OwnPilot

Systematic approach to debugging REST APIs, HTTP errors, authentication issues, and network problems.

MITAuto-check passedBackend & APIs

Install API Debugging

skills CLI
$ npx skills add ownpilot/OwnPilot --skill api-debugging -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install ownpilot/OwnPilot api-debugging --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/ownpilot/OwnPilot.git skills-src && mkdir -p .claude/skills && cp -r skills-src/packages/gateway/data/example-skills/api-debugging .claude/skills/api-debugging && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
api-debugging
GitHub stars
426
Token cost
~824 tokens
SKILL.md length
335 words
Files
1
Skills in repo
9
Repo updated
First seen
Licence
MIT

At a glance

Systematic approach to debugging REST APIs, HTTP errors, authentication issues, and network problems.

  • Works in 5 steps: Reproduce — Get the exact request that… → Isolate — Is it the request, the server,… → Check basics — Status code, response… → …
  • The user has API errors
  • SKILL.md covers Debugging Workflow, HTTP Status Code Guide, Authentication Checklist and Common Patterns, plus 1 more section
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

API Debugging is an agent skill from ownpilot/OwnPilot. Systematic approach to debugging REST APIs, HTTP errors, authentication issues, and network problems. Use when the user has API errors, status code issues, timeout problems, or needs help troubleshooting HTTP requests.

Its SKILL.md is about 820 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts. Compatibility notes: Works best with code execution enabled for running curl/fetch commands

It sits in Backend & APIs, covering Debugging, REST APIs and Authentication. The repository describes itself as: Privacy-first personal AI assistant platform with autonomous agents, tool orchestration, and multi-provider support. The licence is MIT.

When your agent uses it

  • The user has API errors
  • Status code issues
  • Timeout problems
  • Needs help troubleshooting HTTP requests

Example prompts

  • “/api-debugging”

Requirements

  • Compatibility (from SKILL.md): Works best with code execution enabled for running curl/fetch commands
  • Pre-approved tools (allowed-tools): Bash(curl:*), Bash(wget:*)

Workflow steps

5 steps, taken from the first numbered list in SKILL.md.

  1. Reproduce — Get the exact request that fails (URL, method, headers, body)
  2. Isolate — Is it the request, the server, auth, or network?
  3. Check basics — Status code, response body, headers
  4. Fix — Apply the solution
  5. Verify — Confirm the fix works

What it can do on your machine

Read from SKILL.md and the folder at commit eb4c27f. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Bash(curl:*)
    • Bash(wget:*)

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Works best with code execution enabled for running curl/fetch commands

    From compatibility in the SKILL.md frontmatter.

Context cost

API Debugging loads about 824 tokens when it runs. Until then it costs about 58 tokens; SKILL.md has 335 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~58
When it runs · the whole SKILL.md, loaded when a task matches
~824

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from ownpilot/OwnPilot at commit eb4c27f, republished under its MIT licence (© ownpilot). 335 words, ~824 tokens.

Download SKILL.mdSave it as .claude/skills/api-debugging/SKILL.md (or your agent's skills folder).
name
api-debugging
description
Systematic approach to debugging REST APIs, HTTP errors, authentication issues, and network problems. Use when the user has API errors, status code issues, timeout problems, or needs help troubleshooting HTTP requests.
allowed-tools
Bash(curl:*), Bash(wget:*)
compatibility
Works best with code execution enabled for running curl/fetch commands
license
MIT
metadata.author
ownpilot
metadata.version
1.0.0

API Debugging

You are an expert API debugger. Follow this systematic process when helping troubleshoot API issues.

Debugging Workflow

  1. Reproduce — Get the exact request that fails (URL, method, headers, body)
  2. Isolate — Is it the request, the server, auth, or network?
  3. Check basics — Status code, response body, headers
  4. Fix — Apply the solution
  5. Verify — Confirm the fix works

HTTP Status Code Guide

Client Errors (4xx)
CodeMeaningCommon CauseFix
400Bad RequestMalformed JSON, missing fieldCheck request body schema
401UnauthorizedMissing/expired tokenRefresh auth token
403ForbiddenInsufficient permissionsCheck API key scopes
404Not FoundWrong URL or deleted resourceVerify endpoint path
405Method Not AllowedGET instead of POSTCheck HTTP method
409ConflictDuplicate resourceCheck unique constraints
422UnprocessableValidation failedCheck field types/values
429Too Many RequestsRate limitedAdd retry with backoff
Server Errors (5xx)
CodeMeaningAction
500Internal Server ErrorCheck server logs, report bug
502Bad GatewayUpstream service down, retry
503Service UnavailableService overloaded, wait and retry
504Gateway TimeoutIncrease timeout, check slow queries

Authentication Checklist

When auth fails (401/403):

  1. Is the token/key present in the request?
  2. Is it in the right header? (Authorization: Bearer <token> vs X-API-Key: <key>)
  3. Has the token expired? (Decode JWT at jwt.io to check exp)
  4. Are the scopes/permissions sufficient?
  5. Is there an IP allowlist blocking the request?
  6. Is the API key for the correct environment (prod vs staging)?

Common Patterns

Retry with exponential backoff
Wait: 1s → 2s → 4s → 8s (max 3-4 retries)
Only retry on: 429, 500, 502, 503, 504
Never retry on: 400, 401, 403, 404
Debug steps for timeout issues
  1. Is the endpoint correct? (Try a simple GET first)
  2. Is the payload too large?
  3. Is the server under load? (Check response time headers)
  4. Is there a proxy/firewall in the way?
  5. Try with a longer timeout to confirm it's not just slow
CORS issues (browser only)
  • Error: "No Access-Control-Allow-Origin header"
  • Fix: Server must add Access-Control-Allow-Origin header
  • Workaround: Use server-side proxy, not browser fetch

Request Debugging Template

When analyzing a failed request, gather:

Endpoint:  [METHOD] [URL]
Headers:   [Key headers, especially Auth]
Body:      [Request payload]
Status:    [Response status code]
Response:  [Error message or body]
Timing:    [How long did it take?]
Context:   [When did it start failing? What changed?]

© ownpilot, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in packages/gateway/data/example-skills/api-debugging of ownpilot/OwnPilot.

Open the folder on GitHubat commit eb4c27f

Compare with similar skills

API Debugging next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

API Debugging compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
API Debugging this skillownpilot/OwnPilot426—~824Automated safety check: PassMIT
Route TesterMicrock/ordinary-claude-skills4011 repos~2.4kAutomated safety check: NotesCustom licence
Project GeneratorLeoYeAI/openclaw-master-skills2.2k—~4.5kAutomated safety check: PassMIT
Debugging Mwaa Workflowaws/agent-toolkit-for-aws2.8k—~2.3kAutomated safety check: PassApache-2.0
Writing Csharp Codemicrosoft-foundry/foundry-agent-webapp127—~3.2kAutomated safety check: NotesMIT
Supabase Development and Debuggingsupabase/agent-skills2.7k3 repos~3.6kAutomated safety check: PassMIT

Similar skills

  • Route Tester

    Microck/ordinary-claude-skills

    Test authenticated routes in the your project using cookie-based authentication.

    401 GitHub starsUsed in 1 repo~2.4k tokens
    Backend & APIsAuto-check: notes
  • Project Generator

    LeoYeAI/openclaw-master-skills

    Automatically transform requirement documents or natural language descriptions into complete full-stack projects (Java backend + Vue frontend) with MANDATORY interactive tech stack selection.

    2.2k GitHub stars~4.5k tokensUpdated 2 mo ago
    Backend & APIsAuto-check passed
  • Debugging Mwaa Workflow

    aws/agent-toolkit-for-aws

    Official

    Diagnoses and root-causes Amazon MWAA workflow failures across Provisioned (Python DAG) and Serverless (YAML workflow) environments.

    2.8k GitHub stars~2.3k tokensUpdated today
    Backend & APIsAuto-check passed
  • Writing Csharp Code

    microsoft-foundry/foundry-agent-webapp

    Provides C and ASP.NET Core coding standards for this repository.

    127 GitHub stars~3.2k tokensUpdated 5 mo ago
    Backend & APIsAuto-check: notes
  • Official

    General Supabase skill for database, auth, Edge Functions, Realtime and storage work, plus client libraries, migrations, security audits, debugging and reading logs.

    2.7k GitHub starsUsed in 3 repos~3.6k tokens
    Backend & APIsAuto-check passed
  • Laravel Specialist

    Jeffallan/claude-skills

    Builds Laravel 10+ applications with Eloquent models, Sanctum authentication, Horizon queues, API resources and Livewire components, tested with Pest or PHPUnit.

    12k GitHub starsUsed in 1 repo~2.1k tokens
    Backend & APIsAuto-check passed

More from ownpilot/OwnPilot

All 9 skills in this repo
  • Code Review

    ownpilot/OwnPilot

    Reviews code for quality issues, security vulnerabilities, performance problems, and best practices.

    426 GitHub stars~493 tokensUpdated 29 days ago
    Auto-check passed
  • Git Workflow

    ownpilot/OwnPilot

    Guides you through Git workflows — branching strategies, commit conventions, merge conflict resolution, and release management.

    426 GitHub stars~572 tokensUpdated 29 days ago
    Auto-check passed
  • Writing Assistant

    ownpilot/OwnPilot

    Helps improve writing quality — emails, documents, blog posts, and technical content.

    426 GitHub stars~532 tokensUpdated 29 days ago
    Auto-check passed
  • Document Assistant

    ownpilot/OwnPilot

    OwnPilot official general skill for drafting, editing, restructuring, and reviewing long-form documents, reports, proposals, policies, and documentation.

    426 GitHub stars~302 tokensUpdated 29 days ago
    Auto-check passed
  • Meeting Notes

    ownpilot/OwnPilot

    OwnPilot official general skill for converting rough meeting notes, transcripts, and call summaries into decisions, action items, owners, risks, and follow-ups.

    426 GitHub stars~298 tokensUpdated 29 days ago
    Auto-check passed
  • Presentation Builder

    ownpilot/OwnPilot

    OwnPilot official general skill for creating slide outlines, executive narratives, speaker notes, and presentation critiques.

    426 GitHub stars~285 tokensUpdated 29 days ago
    Auto-check passed

Questions about API Debugging

What does API Debugging do?

Systematic approach to debugging REST APIs, HTTP errors, authentication issues, and network problems. API Debugging is an agent skill from ownpilot/OwnPilot. Systematic approach to debugging REST APIs, HTTP errors, authentication issues, and network problems.

When should I use API Debugging?

API Debugging fits situations like: the user has API errors; status code issues; timeout problems; needs help troubleshooting HTTP requests.

How do I install API Debugging in Claude Code?

Run `npx skills add ownpilot/OwnPilot --skill api-debugging -a claude-code`. Or copy the skill folder (packages/gateway/data/example-skills/api-debugging in ownpilot/OwnPilot) into .claude/skills/api-debugging in your project. Claude Code loads it when a task matches its description.

How do I install API Debugging in Codex?

Run `npx skills add ownpilot/OwnPilot --skill api-debugging -a codex`. Or copy the skill folder (packages/gateway/data/example-skills/api-debugging in ownpilot/OwnPilot) into .agents/skills/api-debugging in your project. Codex loads it when a task matches its description.

Can I use API Debugging in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add ownpilot/OwnPilot --skill api-debugging -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/api-debugging, .gemini/skills/api-debugging, .github/skills/api-debugging and .opencode/skills/api-debugging in your project.

What does API Debugging need to run?

SKILL.md names no scripts, command-line tools or credentials: API Debugging is instructions for the agent only. Its frontmatter pre-approves these tools: Bash(curl:*), Bash(wget:*). Compatibility (from SKILL.md): Works best with code execution enabled for running curl/fetch commands.

Does API Debugging access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is API Debugging safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does API Debugging use?

API Debugging is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does API Debugging use?

About 824 tokens (SKILL.md is roughly 3.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to API Debugging?

Skills that share tags, products or a category with API Debugging: Route Tester (Microck/ordinary-claude-skills, 401 stars), Project Generator (LeoYeAI/openclaw-master-skills, 2.2k stars), Debugging Mwaa Workflow (aws/agent-toolkit-for-aws, 2.8k stars) and Writing Csharp Code (microsoft-foundry/foundry-agent-webapp, 127 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains API Debugging?

ownpilot (a GitHub organization) maintains it in ownpilot/OwnPilot, which has 426 GitHub stars. The repository holds 9 skills in this directory. The repository was last updated on September 8, 2026.

Source: ownpilot/OwnPilot on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.