SkillAgentSearch skills...

adobe-known-pitfalls

Detect current high-risk Adobe integration traps before they become production incidents

Install / Use

npx skills add jeremylongshore/tons-of-skills-marketplace --skill adobe-known-pitfalls

Installs into whichever agent you are using.

About this skill
📄

SKILL.md

Installable skill definition

Quality Score

80/100

Supported Platforms

Claude Code

Our assessment of adobe-known-pitfalls

adobe-known-pitfalls scores 80/100 on our quality scale, 2356th of 3,845 Development & Engineering skills we index.

Its SKILL.md is 4.0 KB long, well organised into 13 sections and no code examples: a solid amount of guidance for an agent.

With 2,785 GitHub stars, it is one of the more widely adopted skills in the catalogue.

Substance
26/30
Structure
13/20
Description
12/15
Adoption
15/20
Freshness
15/15

Maintenance, license and trust

  • The repository was last updated 6 days ago, so adobe-known-pitfalls is actively maintained.
  • It is released under the MIT license, a permissive license that allows use, modification and commercial use with attribution.
  • Its trust signals score 100/100, with no cautions. These come from repository metadata, not a code audit — read the skill file before letting an agent act on it.

adobe-known-pitfalls compared with similar skills

All 4 of these similar skills score higher than adobe-known-pitfalls; compare them before choosing.

SkillScoreStarsUpdatedFormat
adobe-known-pitfalls (this skill)by jeremylongshore802.8k6d agoSKILL.md
ai-job-searchby MadsLorentzen10044.5ktodayCLAUDE.md
claude-howtoby luongnv8910041.7k4d agoCLAUDE.md
algorithmic-artby anthropics100177.9k7d agoSKILL.md
pptxby anthropics100177.9k7d agoSKILL.md

Frequently asked questions

How do I install adobe-known-pitfalls?
Run npx skills add jeremylongshore/tons-of-skills-marketplace --skill adobe-known-pitfalls. The install tabs above show the steps for each supported agent.
Which AI agents does adobe-known-pitfalls work with?
It is written for Claude Code, as a SKILL.md file. Other agents that read the same format can often use it too.
Is adobe-known-pitfalls safe to use?
It is MIT-licensed and scores 100/100 on trust signals. Skills are instructions an agent will follow, so read the file before installing it and do not approve commands you do not understand.
Is adobe-known-pitfalls still maintained?
The repository was last updated 6 days ago, so adobe-known-pitfalls is actively maintained.

name: adobe-known-pitfalls description: >- Detect current high-risk Adobe integration traps before they become production incidents. Use when the task requires adobe integration pitfall review. Trigger with "Adobe pitfalls", "review Adobe integration", or "find obsolete Adobe code". allowed-tools: Read,Glob,Grep,Write,Edit argument-hint: "<repository> <services> <environment>" version: 1.8.0 license: MIT author: Jeremy Longshore jeremy@intentsolutions.io tags: [saas, adobe, review] model: inherit effort: high compatibility: "Designed for Claude Code; live Adobe actions require network access, appropriate entitlement and authentication, and explicit approval"

Adobe Integration Pitfall Review

Overview

Detect current high-risk Adobe integration traps before they become production incidents. This workflow produces a reviewable artifact and evidence before any live side effect.

Prerequisites

  • Current first-party Adobe documentation for every selected service, API version, auth flow, limit, and lifecycle.
  • Named product, identity, security, data, budget, release, and operations owners appropriate to the scope.
  • Synthetic or approved non-production fixtures with secret and content canaries.

Current Contract

High-risk traps include Service Account JWT, confusing S2S with user auth, missing entitlements/profiles, secrets in clients, retired Photoshop v1 and Lightroom Firefly Services, reconstructed async URLs, leaked signed URLs, fixed limits, unverified events, and wrong App Builder workspace. Recheck the dated evidence map before relying on mutable product behavior.

Authentication

Review effective authority and secret flow before code style. A valid token, installed SDK, or successful deploy does not prove product entitlement or correct data ownership.

Instructions

  1. Read manifests, locks, config, adapters, routes, workflows, logs, dashboards, tests, and runbooks.
  2. Glob and Grep for JWT, /sensei/cutout, Lightroom Firefly Services, client-side secrets, fixed quotas, and hardcoded job routes.
  3. Trace auth ownership, product profiles, versions, signed URLs, async states, retries, events, workspaces, and cleanup.
  4. Classify each finding as obsolete, unsafe, brittle, undocumented, environment-specific, or stale evidence.
  5. Propose the smallest compatible correction with tests, canary, rollback, and named owner.
  6. Edit only approved repository artifacts, rerun gates, and record unresolved external dependencies.

Tool Discipline

Use Read, Glob, and Grep to inspect current documentation, configuration, code, fixtures, and evidence. Use Write and Edit only for approved repository artifacts. Skill invocation alone does not authorize network access, credentials, Adobe content, consent, uploads, generation, spend, deployment, registration changes, replay, cancellation, or deletion.

Approval Boundaries

Read-only review needs no mutation authority. Credential/profile changes, production calls, deploys, replays, registration changes, and deletion require separate explicit approval.

Error Handling

  • Do not replace one remembered constant with another.
  • Do not infer a product from a similarly named Adobe API.
  • Do not auto-fix secrets without coordinated rotation and revocation.

Output

Return findings with file/line evidence, current sources, severity, correction, test, owner, and unresolved risks. Mark assumptions, observed environment behavior, owners, evidence dates, and unresolved gaps explicitly.

Examples

  • Find a retired endpoint in code and documentation.
  • Find a status URL reconstructed from jobId instead of response evidence.

Validation

Exercise and record expected and observed results for:

  • JWT
  • Photoshop v1
  • Lightroom EOL
  • client secret
  • fixed limit
  • forged event

Resources

  • Current first-party evidence map — recheck dated Adobe sources before execution.
  • Treat observed tenant or product behavior as environment-specific evidence, never a universal Adobe guarantee.

Related Skills

View on GitHub
GitHub Stars2.8k
CategoryDevelopment
Updated6d ago
Forks404

Languages

Python

Trust signals

100/100

From repository metadata: license, adoption, age and documentation. Not a code audit — see the Safety scan above for what the skill file itself contains.

No cautions