Agent skill

Route Permission System

by yyw-code in yyw-code/MallBase

MallBase ThinkPHP 后台路由与权限元数据规则;新增或调整 backend/route/api/admin 路由、System 权限码、菜单元数据、/:id 路径参数、共享 permission 或 sync:permissions 同步时使用。

MITAuto-check passed

Install Route Permission System

skills CLI
$ npx skills add yyw-code/MallBase --skill route-permission-system -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install yyw-code/MallBase route-permission-system --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/yyw-code/MallBase.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.codex/skills/thinkPHP/route-permission-system .claude/skills/route-permission-system && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
route-permission-system
GitHub stars
106
Token cost
~499 tokens
SKILL.md length
66 words
Files
1
Skills in repo
12
Repo updated
First seen
Licence
MIT

At a glance

MallBase ThinkPHP 后台路由与权限元数据规则;新增或调整 backend/route/api/admin 路由、System 权限码、菜单元数据、/:id 路径参数、共享 permission 或 sync:permissions 同步时使用。

  • Works in 6 steps: 需要 ID 的资源路由使用… → 参与后台授权的路由名使用 System{Domain}{Action};分组… → 分组通过… → …
  • SKILL.md covers 当前入口, 路由契约, 共享权限 and 同步与自检
  • Calls php

What it does

Route Permission System is an agent skill from yyw-code/MallBase. MallBase ThinkPHP 后台路由与权限元数据规则;新增或调整 backend/route/api/admin 路由、System 权限码、菜单元数据、/:id 路径参数、共享 permission 或 sync:permissions 同步时使用。

Its SKILL.md is about 500 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It works with PHP. The repository describes itself as: MallBase 是一个基于 PHP 的商城型业务基础框架,围绕 用户、商品、订单、权限 四个最核心的商业模块,提供一套清晰、稳定、可扩展的业务结构基线。 它不是一个功能齐全的电商系统,也不是通用 Web 框架,而是一个专注于“商城核心模型”的业务底座,用于快速构建和演进各类商业应用。 The licence is MIT.

Example prompts

  • “/route-permission-system”

Workflow steps

6 steps, taken from the first numbered list in SKILL.md.

  1. 需要 ID 的资源路由使用 info/:id、update/:id、delete/:id,Controller 从路径参数读取 id。
  2. 参与后台授权的路由名使用 System{Domain}{Action};分组 _group_code 使用稳定的 System{Domain}。
  3. 分组通过 _group_name、_group_code、_path、_component、_parent 等元数据生成后端驱动菜单。
  4. 写操作显式使用 Permission::TYPE_BUTTON;独立的列表、详情等读权限使用 Permission::TYPE_MENU。
  5. 不参与授权的路由显式设置 _auth => false,并按现有路由组规则移除不需要的中间件。
  6. prefix() 使用当前 Controller 命名空间,例如 admin.goods.GoodsController/。

What it can do on your machine

Read from SKILL.md and the folder at commit 3f10589. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • php

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Route Permission System loads about 499 tokens when it runs. Until then it costs about 39 tokens; SKILL.md has 66 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~39
When it runs · the whole SKILL.md, loaded when a task matches
~499

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from yyw-code/MallBase at commit 3f10589, republished under its MIT licence (© yyw-code). 66 words, ~499 tokens.

Download SKILL.mdSave it as .claude/skills/route-permission-system/SKILL.md (or your agent's skills folder).
name
route-permission-system
description
MallBase ThinkPHP 后台路由与权限元数据规则;新增或调整 backend/route/api/admin 路由、System 权限码、菜单元数据、/:id 路径参数、共享 _permission 或 sync:permissions 同步时使用。

后台路由与权限元数据

当前入口

后台业务路由放在 backend/route/api/admin/*.php。它们由 backend/route/admin.php 加载,并继承后台 API 组的鉴权、权限、请求锁和操作日志中间件。

新增路由前先查看同领域文件;通用 CRUD 可参考 backend/route/api/admin/admin.php、goods.php。

路由契约

  1. 需要 ID 的资源路由使用 info/:id、update/:id、delete/:id,Controller 从路径参数读取 id。
  2. 参与后台授权的路由名使用 System{Domain}{Action};分组 _group_code 使用稳定的 System{Domain}。
  3. 分组通过 _group_name、_group_code、_path、_component、_parent 等元数据生成后端驱动菜单。
  4. 写操作显式使用 Permission::TYPE_BUTTON;独立的列表、详情等读权限使用 Permission::TYPE_MENU。
  5. 不参与授权的路由显式设置 _auth => false,并按现有路由组规则移除不需要的中间件。
  6. prefix() 使用当前 Controller 命名空间,例如 admin.goods.GoodsController/。
php
Route::group('goods/brand', function () {
    Route::get('list', 'list')
        ->name('SystemGoodsBrandList')
        ->option([
            '_alias' => '品牌列表',
            '_auth' => true,
            '_type' => Permission::TYPE_MENU,
        ]);
    Route::put('update/:id', 'update')
        ->name('SystemGoodsBrandUpdate')
        ->option([
            '_alias' => '更新品牌',
            '_auth' => true,
            '_type' => Permission::TYPE_BUTTON,
        ]);
})->prefix('admin.goods.GoodsBrandController/')
    ->option([
        '_group_name' => '商品品牌',
        '_group_code' => 'SystemGoodsBrand',
        '_path' => '/goods/brand',
        '_component' => '/goods/brand/index',
        '_parent' => 'SystemGoodsManagement',
        '_auth' => true,
    ]);

共享权限

多个接口共用一个权限码时使用 _permission。代表路由保留 _alias 并生成权限节点;仅复用该权限的辅助路由可省略 _alias,避免同步出重复节点。不要用 _permission 掩盖本应独立授权的写操作。

同步与自检

从 backend/ 目录先预览,再同步:

bash
php think sync:permissions --preview
php think sync:permissions
  • 文件位于 backend/route/api/admin/。
  • 路由名、分组码和父级权限码稳定且唯一。
  • ID 使用 /:id,前后端 API 契约一致。
  • --preview 输出符合预期后再执行同步。

© yyw-code, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .codex/skills/thinkPHP/route-permission-system of yyw-code/MallBase.

Open the folder on GitHubat commit 3f10589

Compare with similar skills

Route Permission System next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Route Permission System compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Route Permission System this skillyyw-code/MallBase106—~499Automated safety check: PassMIT
Configuring Horizoncoollabsio/coolify63k4 repos~898Automated safety check: PassMIT
Tailwindcss Developmentanonaddy/anonaddy4.9k10 repos~865Automated safety check: PassMIT
Fortify Developmentcoollabsio/coolify63k4 repos~1.9kAutomated safety check: PassMIT
MCP Developmentcoollabsio/coolify63k1 repos~949Automated safety check: PassMIT
WooCommerce Code Reviewwoocommerce/woocommerce11k3 repos~1.1kAutomated safety check: PassCustom licence

Similar skills

  • Configuring Horizon

    coollabsio/coolify

    A skill your agent uses whenever the user mentions Horizon by name in a Laravel context.

    63k GitHub starsUsed in 4 repos~898 tokens
    Backend & APIsAuto-check passed
  • Tailwindcss Development

    anonaddy/anonaddy

    Always invoke when the user's message includes 'tailwind' in any form.

    4.9k GitHub starsUsed in 10 repos~865 tokens
    Frontend & DesignAuto-check passed
  • Fortify Development

    coollabsio/coolify

    ACTIVATE when the user works on authentication in Laravel. An agent skill from coollabsio/coolify.

    63k GitHub starsUsed in 4 repos~1.9k tokens
    Backend & APIsAuto-check passed
  • MCP Development

    coollabsio/coolify

    A skill your agent uses for Laravel MCP development. An agent skill from coollabsio/coolify.

    63k GitHub starsUsed in 1 repo~949 tokens
    Frontend & DesignAuto-check passed
  • WooCommerce Code Review

    woocommerce/woocommerce

    Reviews WooCommerce code changes against the project's standards, flagging backend PHP architecture, naming, documentation, data integrity and testing violations.

    11k GitHub starsUsed in 3 repos~1.1k tokens
    DevelopmentAuto-check passed
  • Sync Translations

    symfony/symfony

    Synchronize translation catalogs across maintained Symfony branches: find messages that newer branches added to the English catalogs but that are still missing from the oldest maintained branch…

    31k GitHub stars~1.9k tokensUpdated today
    Writing & ContentAuto-check passed

More from yyw-code/MallBase

All 12 skills in this repo
  • MallBase 支付与退款回调安全规则;修改 backend/route/notify.php、PayNotifyController、NotifyService、WechatPaymentResultService、mbpaymentlog,或处理微信/其它渠道 webhook 的验签、解密、防重放、金额校验、幂等、事务与 HTTP 应答时使用。

    106 GitHub stars~495 tokensUpdated 2 mo ago
    Auto-check passed
  • Upload Component First

    yyw-code/MallBase

    MallBase Vben Admin 上传组件与字段契约规则;实现图片、视频或文件上传,以及处理 FileInfo 回填和提交值时使用。

    106 GitHub stars~553 tokensUpdated 2 mo ago
    Auto-check passed
  • Architecture Layering

    yyw-code/MallBase

    MallBase ThinkPHP 后端分层、Swoole Service 无状态与 IDE 泛型规则;开发或重构 backend/app 下的 Controller、Service、Model,调整 BaseController/BaseService、service()/model() 调用、构造注入或协程安全状态时使用。

    106 GitHub stars~391 tokensUpdated 2 mo ago
    Auto-check passed
  • E2E Webantd Realapi

    yyw-code/MallBase

    MallBase Vben Admin 局部格式化与真实后端 E2E 收口规则;修改、测试或回归 web-antd 代码时使用。

    106 GitHub stars~308 tokensUpdated 2 mo ago
    Auto-check passed
  • List Query Sync

    yyw-code/MallBase

    MallBase ThinkPHP 列表查询与分页返回规则;实现或调整 Service 的 buildListQuery、分页 list/total、动态筛选、关联查询、统计、导出或 compact('total', 'list') 返回时使用。

    106 GitHub stars~395 tokensUpdated 2 mo ago
    Auto-check passed
  • Thinkphp

    yyw-code/MallBase

    MallBase ThinkPHP 后端规则导航;仅在后端任务涉及多个场景、需要查找项目规则,或无法确定应读取哪个更具体的 ThinkPHP skill 时使用。

    106 GitHub stars~185 tokensUpdated 2 mo ago
    Auto-check passed

Works with

Questions about Route Permission System

What does Route Permission System do?

MallBase ThinkPHP 后台路由与权限元数据规则;新增或调整 backend/route/api/admin 路由、System 权限码、菜单元数据、/:id 路径参数、共享 permission 或 sync:permissions 同步时使用。. Route Permission System is an agent skill from yyw-code/MallBase.

How do I install Route Permission System in Claude Code?

Run `npx skills add yyw-code/MallBase --skill route-permission-system -a claude-code`. Or copy the skill folder (.codex/skills/thinkPHP/route-permission-system in yyw-code/MallBase) into .claude/skills/route-permission-system in your project. Claude Code loads it when a task matches its description.

How do I install Route Permission System in Codex?

Run `npx skills add yyw-code/MallBase --skill route-permission-system -a codex`. Or copy the skill folder (.codex/skills/thinkPHP/route-permission-system in yyw-code/MallBase) into .agents/skills/route-permission-system in your project. Codex loads it when a task matches its description.

Can I use Route Permission System in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add yyw-code/MallBase --skill route-permission-system -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/route-permission-system, .gemini/skills/route-permission-system, .github/skills/route-permission-system and .opencode/skills/route-permission-system in your project.

What does Route Permission System need to run?

Going by SKILL.md and its folder, Route Permission System needs the command-line tools its instructions call (php).

Does Route Permission System access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Route Permission System safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Route Permission System use?

Route Permission System is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Route Permission System use?

About 499 tokens (SKILL.md is roughly 2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Route Permission System?

Skills that share tags, products or a category with Route Permission System: Configuring Horizon (coollabsio/coolify, 63k stars), Tailwindcss Development (anonaddy/anonaddy, 4.9k stars), Fortify Development (coollabsio/coolify, 63k stars) and MCP Development (coollabsio/coolify, 63k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Route Permission System?

yyw-code (a GitHub user) maintains it in yyw-code/MallBase, which has 106 GitHub stars. The repository holds 12 skills in this directory. The repository was last updated on August 3, 2026.

Source: yyw-code/MallBase on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.